vfs_syscalls.c revision 1.385 1 1.385 enami /* $NetBSD: vfs_syscalls.c,v 1.385 2009/02/05 13:37:24 enami Exp $ */
2 1.345 ad
3 1.345 ad /*-
4 1.345 ad * Copyright (c) 2008 The NetBSD Foundation, Inc.
5 1.345 ad * All rights reserved.
6 1.345 ad *
7 1.345 ad * Redistribution and use in source and binary forms, with or without
8 1.345 ad * modification, are permitted provided that the following conditions
9 1.345 ad * are met:
10 1.345 ad * 1. Redistributions of source code must retain the above copyright
11 1.345 ad * notice, this list of conditions and the following disclaimer.
12 1.345 ad * 2. Redistributions in binary form must reproduce the above copyright
13 1.345 ad * notice, this list of conditions and the following disclaimer in the
14 1.345 ad * documentation and/or other materials provided with the distribution.
15 1.345 ad *
16 1.345 ad * THIS SOFTWARE IS PROVIDED BY THE NETBSD FOUNDATION, INC. AND CONTRIBUTORS
17 1.345 ad * ``AS IS'' AND ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED
18 1.345 ad * TO, THE IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR
19 1.345 ad * PURPOSE ARE DISCLAIMED. IN NO EVENT SHALL THE FOUNDATION OR CONTRIBUTORS
20 1.345 ad * BE LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR
21 1.345 ad * CONSEQUENTIAL DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF
22 1.345 ad * SUBSTITUTE GOODS OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS
23 1.345 ad * INTERRUPTION) HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN
24 1.345 ad * CONTRACT, STRICT LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE)
25 1.345 ad * ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE
26 1.345 ad * POSSIBILITY OF SUCH DAMAGE.
27 1.345 ad */
28 1.31 cgd
29 1.31 cgd /*
30 1.31 cgd * Copyright (c) 1989, 1993
31 1.31 cgd * The Regents of the University of California. All rights reserved.
32 1.31 cgd * (c) UNIX System Laboratories, Inc.
33 1.31 cgd * All or some portions of this file are derived from material licensed
34 1.31 cgd * to the University of California by American Telephone and Telegraph
35 1.31 cgd * Co. or Unix System Laboratories, Inc. and are reproduced herein with
36 1.31 cgd * the permission of UNIX System Laboratories, Inc.
37 1.31 cgd *
38 1.31 cgd * Redistribution and use in source and binary forms, with or without
39 1.31 cgd * modification, are permitted provided that the following conditions
40 1.31 cgd * are met:
41 1.31 cgd * 1. Redistributions of source code must retain the above copyright
42 1.31 cgd * notice, this list of conditions and the following disclaimer.
43 1.31 cgd * 2. Redistributions in binary form must reproduce the above copyright
44 1.31 cgd * notice, this list of conditions and the following disclaimer in the
45 1.31 cgd * documentation and/or other materials provided with the distribution.
46 1.191 agc * 3. Neither the name of the University nor the names of its contributors
47 1.31 cgd * may be used to endorse or promote products derived from this software
48 1.31 cgd * without specific prior written permission.
49 1.31 cgd *
50 1.31 cgd * THIS SOFTWARE IS PROVIDED BY THE REGENTS AND CONTRIBUTORS ``AS IS'' AND
51 1.31 cgd * ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE
52 1.31 cgd * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE
53 1.31 cgd * ARE DISCLAIMED. IN NO EVENT SHALL THE REGENTS OR CONTRIBUTORS BE LIABLE
54 1.31 cgd * FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL
55 1.31 cgd * DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS
56 1.31 cgd * OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION)
57 1.31 cgd * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT
58 1.31 cgd * LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY
59 1.31 cgd * OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF
60 1.31 cgd * SUCH DAMAGE.
61 1.31 cgd *
62 1.113 fvdl * @(#)vfs_syscalls.c 8.42 (Berkeley) 7/31/95
63 1.31 cgd */
64 1.173 lukem
65 1.173 lukem #include <sys/cdefs.h>
66 1.385 enami __KERNEL_RCSID(0, "$NetBSD: vfs_syscalls.c,v 1.385 2009/02/05 13:37:24 enami Exp $");
67 1.111 mrg
68 1.378 ad #ifdef _KERNEL_OPT
69 1.258 elad #include "opt_fileassoc.h"
70 1.261 dogcow #include "veriexec.h"
71 1.378 ad #endif
72 1.31 cgd
73 1.31 cgd #include <sys/param.h>
74 1.31 cgd #include <sys/systm.h>
75 1.31 cgd #include <sys/namei.h>
76 1.31 cgd #include <sys/filedesc.h>
77 1.31 cgd #include <sys/kernel.h>
78 1.31 cgd #include <sys/file.h>
79 1.31 cgd #include <sys/stat.h>
80 1.31 cgd #include <sys/vnode.h>
81 1.31 cgd #include <sys/mount.h>
82 1.31 cgd #include <sys/proc.h>
83 1.31 cgd #include <sys/uio.h>
84 1.248 yamt #include <sys/kmem.h>
85 1.31 cgd #include <sys/dirent.h>
86 1.172 simonb #include <sys/sysctl.h>
87 1.35 cgd #include <sys/syscallargs.h>
88 1.306 dsl #include <sys/vfs_syscalls.h>
89 1.192 drochner #include <sys/ktrace.h>
90 1.251 elad #ifdef FILEASSOC
91 1.251 elad #include <sys/fileassoc.h>
92 1.251 elad #endif /* FILEASSOC */
93 1.219 blymn #include <sys/verified_exec.h>
94 1.242 elad #include <sys/kauth.h>
95 1.346 ad #include <sys/atomic.h>
96 1.360 ad #include <sys/module.h>
97 1.380 pooka #include <sys/buf.h>
98 1.35 cgd
99 1.148 fvdl #include <miscfs/genfs/genfs.h>
100 1.148 fvdl #include <miscfs/syncfs/syncfs.h>
101 1.342 ad #include <miscfs/specfs/specdev.h>
102 1.181 thorpej
103 1.232 jmmv #include <nfs/rpcv2.h>
104 1.232 jmmv #include <nfs/nfsproto.h>
105 1.232 jmmv #include <nfs/nfs.h>
106 1.232 jmmv #include <nfs/nfs_var.h>
107 1.232 jmmv
108 1.181 thorpej MALLOC_DEFINE(M_MOUNT, "mount", "vfs mount struct");
109 1.110 mrg
110 1.234 christos static int change_dir(struct nameidata *, struct lwp *);
111 1.234 christos static int change_flags(struct vnode *, u_long, struct lwp *);
112 1.234 christos static int change_mode(struct vnode *, int, struct lwp *l);
113 1.234 christos static int change_owner(struct vnode *, uid_t, gid_t, struct lwp *, int);
114 1.63 christos
115 1.205 junyoung void checkdirs(struct vnode *);
116 1.31 cgd
117 1.150 fvdl int dovfsusermount = 0;
118 1.150 fvdl
119 1.31 cgd /*
120 1.31 cgd * Virtual File System System Calls
121 1.31 cgd */
122 1.31 cgd
123 1.31 cgd /*
124 1.31 cgd * Mount a file system.
125 1.31 cgd */
126 1.99 thorpej
127 1.99 thorpej /*
128 1.99 thorpej * This table is used to maintain compatibility with 4.3BSD
129 1.378 ad * and NetBSD 0.9 mount syscalls - and possibly other systems.
130 1.378 ad * Note, the order is important!
131 1.124 thorpej *
132 1.167 jdolecek * Do not modify this table. It should only contain filesystems
133 1.167 jdolecek * supported by NetBSD 0.9 and 4.3BSD.
134 1.99 thorpej */
135 1.167 jdolecek const char * const mountcompatnames[] = {
136 1.99 thorpej NULL, /* 0 = MOUNT_NONE */
137 1.167 jdolecek MOUNT_FFS, /* 1 = MOUNT_UFS */
138 1.99 thorpej MOUNT_NFS, /* 2 */
139 1.99 thorpej MOUNT_MFS, /* 3 */
140 1.99 thorpej MOUNT_MSDOS, /* 4 */
141 1.167 jdolecek MOUNT_CD9660, /* 5 = MOUNT_ISOFS */
142 1.167 jdolecek MOUNT_FDESC, /* 6 */
143 1.167 jdolecek MOUNT_KERNFS, /* 7 */
144 1.167 jdolecek NULL, /* 8 = MOUNT_DEVFS */
145 1.167 jdolecek MOUNT_AFS, /* 9 */
146 1.99 thorpej };
147 1.113 fvdl const int nmountcompatnames = sizeof(mountcompatnames) /
148 1.99 thorpej sizeof(mountcompatnames[0]);
149 1.99 thorpej
150 1.285 elad static int
151 1.283 elad mount_update(struct lwp *l, struct vnode *vp, const char *path, int flags,
152 1.324 pooka void *data, size_t *data_len)
153 1.56 thorpej {
154 1.113 fvdl struct mount *mp;
155 1.283 elad int error = 0, saved_flags;
156 1.283 elad
157 1.283 elad mp = vp->v_mount;
158 1.283 elad saved_flags = mp->mnt_flag;
159 1.283 elad
160 1.329 ad /* We can operate only on VV_ROOT nodes. */
161 1.329 ad if ((vp->v_vflag & VV_ROOT) == 0) {
162 1.329 ad error = EINVAL;
163 1.329 ad goto out;
164 1.329 ad }
165 1.31 cgd
166 1.218 yamt /*
167 1.283 elad * We only allow the filesystem to be reloaded if it
168 1.373 ad * is currently mounted read-only. Additionally, we
169 1.373 ad * prevent read-write to read-only downgrades.
170 1.283 elad */
171 1.373 ad if ((flags & (MNT_RELOAD | MNT_RDONLY)) != 0 &&
172 1.373 ad (mp->mnt_flag & MNT_RDONLY) == 0) {
173 1.329 ad error = EOPNOTSUPP; /* Needs translation */
174 1.329 ad goto out;
175 1.329 ad }
176 1.292 elad
177 1.292 elad error = kauth_authorize_system(l->l_cred, KAUTH_SYSTEM_MOUNT,
178 1.292 elad KAUTH_REQ_SYSTEM_MOUNT_UPDATE, mp, KAUTH_ARG(flags), data);
179 1.292 elad if (error)
180 1.329 ad goto out;
181 1.292 elad
182 1.358 ad if (vfs_busy(mp, NULL)) {
183 1.329 ad error = EPERM;
184 1.329 ad goto out;
185 1.329 ad }
186 1.283 elad
187 1.358 ad mutex_enter(&mp->mnt_updating);
188 1.358 ad
189 1.286 yamt mp->mnt_flag &= ~MNT_OP_FLAGS;
190 1.286 yamt mp->mnt_flag |= flags & (MNT_RELOAD | MNT_FORCE | MNT_UPDATE);
191 1.286 yamt
192 1.283 elad /*
193 1.283 elad * Set the mount level flags.
194 1.283 elad */
195 1.283 elad if (flags & MNT_RDONLY)
196 1.283 elad mp->mnt_flag |= MNT_RDONLY;
197 1.283 elad else if (mp->mnt_flag & MNT_RDONLY)
198 1.283 elad mp->mnt_iflag |= IMNT_WANTRDWR;
199 1.283 elad mp->mnt_flag &=
200 1.283 elad ~(MNT_NOSUID | MNT_NOEXEC | MNT_NODEV |
201 1.283 elad MNT_SYNCHRONOUS | MNT_UNION | MNT_ASYNC | MNT_NOCOREDUMP |
202 1.370 simonb MNT_NOATIME | MNT_NODEVMTIME | MNT_SYMPERM | MNT_SOFTDEP |
203 1.370 simonb MNT_LOG);
204 1.283 elad mp->mnt_flag |= flags &
205 1.283 elad (MNT_NOSUID | MNT_NOEXEC | MNT_NODEV |
206 1.283 elad MNT_SYNCHRONOUS | MNT_UNION | MNT_ASYNC | MNT_NOCOREDUMP |
207 1.283 elad MNT_NOATIME | MNT_NODEVMTIME | MNT_SYMPERM | MNT_SOFTDEP |
208 1.370 simonb MNT_LOG | MNT_IGNORE);
209 1.283 elad
210 1.332 pooka error = VFS_MOUNT(mp, path, data, data_len);
211 1.283 elad
212 1.320 dsl if (error && data != NULL) {
213 1.283 elad int error2;
214 1.283 elad
215 1.378 ad /*
216 1.378 ad * Update failed; let's try and see if it was an
217 1.379 ad * export request. For compat with 3.0 and earlier.
218 1.378 ad */
219 1.381 ad error2 = vfs_hooks_reexport(mp, path, data);
220 1.283 elad
221 1.381 ad /*
222 1.381 ad * Only update error code if the export request was
223 1.283 elad * understood but some problem occurred while
224 1.381 ad * processing it.
225 1.381 ad */
226 1.283 elad if (error2 != EJUSTRETURN)
227 1.283 elad error = error2;
228 1.283 elad }
229 1.381 ad
230 1.283 elad if (mp->mnt_iflag & IMNT_WANTRDWR)
231 1.283 elad mp->mnt_flag &= ~MNT_RDONLY;
232 1.283 elad if (error)
233 1.283 elad mp->mnt_flag = saved_flags;
234 1.286 yamt mp->mnt_flag &= ~MNT_OP_FLAGS;
235 1.286 yamt mp->mnt_iflag &= ~IMNT_WANTRDWR;
236 1.283 elad if ((mp->mnt_flag & (MNT_RDONLY | MNT_ASYNC)) == 0) {
237 1.283 elad if (mp->mnt_syncer == NULL)
238 1.283 elad error = vfs_allocate_syncvnode(mp);
239 1.125 tls } else {
240 1.283 elad if (mp->mnt_syncer != NULL)
241 1.283 elad vfs_deallocate_syncvnode(mp);
242 1.283 elad }
243 1.358 ad mutex_exit(&mp->mnt_updating);
244 1.354 ad vfs_unbusy(mp, false, NULL);
245 1.283 elad
246 1.329 ad out:
247 1.283 elad return (error);
248 1.283 elad }
249 1.283 elad
250 1.285 elad static int
251 1.320 dsl mount_get_vfsops(const char *fstype, struct vfsops **vfsops)
252 1.283 elad {
253 1.322 christos char fstypename[sizeof(((struct statvfs *)NULL)->f_fstypename)];
254 1.283 elad int error;
255 1.283 elad
256 1.320 dsl /* Copy file-system type from userspace. */
257 1.322 christos error = copyinstr(fstype, fstypename, sizeof(fstypename), NULL);
258 1.63 christos if (error) {
259 1.54 cgd /*
260 1.227 jmmv * Historically, filesystem types were identified by numbers.
261 1.54 cgd * If we get an integer for the filesystem type instead of a
262 1.54 cgd * string, we check to see if it matches one of the historic
263 1.54 cgd * filesystem types.
264 1.205 junyoung */
265 1.283 elad u_long fsindex = (u_long)fstype;
266 1.99 thorpej if (fsindex >= nmountcompatnames ||
267 1.320 dsl mountcompatnames[fsindex] == NULL)
268 1.320 dsl return ENODEV;
269 1.331 pooka strlcpy(fstypename, mountcompatnames[fsindex],
270 1.331 pooka sizeof(fstypename));
271 1.31 cgd }
272 1.283 elad
273 1.378 ad /* Accept `ufs' as an alias for `ffs', for compatibility. */
274 1.320 dsl if (strcmp(fstypename, "ufs") == 0)
275 1.320 dsl fstypename[0] = 'f';
276 1.285 elad
277 1.360 ad if ((*vfsops = vfs_getopsbyname(fstypename)) != NULL)
278 1.360 ad return 0;
279 1.360 ad
280 1.360 ad /* If we can autoload a vfs module, try again */
281 1.376 ad mutex_enter(&module_lock);
282 1.376 ad (void)module_autoload(fstype, MODULE_CLASS_VFS);
283 1.376 ad mutex_exit(&module_lock);
284 1.360 ad
285 1.360 ad if ((*vfsops = vfs_getopsbyname(fstypename)) != NULL)
286 1.360 ad return 0;
287 1.360 ad
288 1.360 ad return ENODEV;
289 1.320 dsl }
290 1.320 dsl
291 1.320 dsl static int
292 1.320 dsl mount_domount(struct lwp *l, struct vnode **vpp, struct vfsops *vfsops,
293 1.337 ad const char *path, int flags, void *data, size_t *data_len, u_int recurse)
294 1.320 dsl {
295 1.366 simonb struct mount *mp;
296 1.320 dsl struct vnode *vp = *vpp;
297 1.320 dsl struct vattr va;
298 1.320 dsl int error;
299 1.320 dsl
300 1.320 dsl error = kauth_authorize_system(l->l_cred, KAUTH_SYSTEM_MOUNT,
301 1.320 dsl KAUTH_REQ_SYSTEM_MOUNT_NEW, vp, KAUTH_ARG(flags), data);
302 1.320 dsl if (error)
303 1.320 dsl return error;
304 1.320 dsl
305 1.320 dsl /* Can't make a non-dir a mount-point (from here anyway). */
306 1.320 dsl if (vp->v_type != VDIR)
307 1.320 dsl return ENOTDIR;
308 1.320 dsl
309 1.320 dsl /*
310 1.320 dsl * If the user is not root, ensure that they own the directory
311 1.320 dsl * onto which we are attempting to mount.
312 1.320 dsl */
313 1.332 pooka if ((error = VOP_GETATTR(vp, &va, l->l_cred)) != 0 ||
314 1.320 dsl (va.va_uid != kauth_cred_geteuid(l->l_cred) &&
315 1.320 dsl (error = kauth_authorize_generic(l->l_cred,
316 1.320 dsl KAUTH_GENERIC_ISSUSER, NULL)) != 0)) {
317 1.320 dsl return error;
318 1.283 elad }
319 1.283 elad
320 1.320 dsl if (flags & MNT_EXPORTED)
321 1.320 dsl return EINVAL;
322 1.320 dsl
323 1.320 dsl if ((error = vinvalbuf(vp, V_SAVE, l->l_cred, l, 0, 0)) != 0)
324 1.320 dsl return error;
325 1.320 dsl
326 1.283 elad /*
327 1.283 elad * Check if a file-system is not already mounted on this vnode.
328 1.283 elad */
329 1.320 dsl if (vp->v_mountedhere != NULL)
330 1.320 dsl return EBUSY;
331 1.283 elad
332 1.345 ad mp = kmem_zalloc(sizeof(*mp), KM_SLEEP);
333 1.345 ad if (mp == NULL)
334 1.345 ad return ENOMEM;
335 1.283 elad
336 1.320 dsl mp->mnt_op = vfsops;
337 1.345 ad mp->mnt_refcnt = 1;
338 1.31 cgd
339 1.296 pooka TAILQ_INIT(&mp->mnt_vnodelist);
340 1.358 ad rw_init(&mp->mnt_unmounting);
341 1.344 dholland mutex_init(&mp->mnt_renamelock, MUTEX_DEFAULT, IPL_NONE);
342 1.358 ad mutex_init(&mp->mnt_updating, MUTEX_DEFAULT, IPL_NONE);
343 1.358 ad error = vfs_busy(mp, NULL);
344 1.358 ad KASSERT(error == 0);
345 1.358 ad mutex_enter(&mp->mnt_updating);
346 1.283 elad
347 1.129 fvdl mp->mnt_vnodecovered = vp;
348 1.257 ad mp->mnt_stat.f_owner = kauth_cred_geteuid(l->l_cred);
349 1.277 hannken mount_initspecific(mp);
350 1.195 thorpej
351 1.195 thorpej /*
352 1.195 thorpej * The underlying file system may refuse the mount for
353 1.198 thorpej * various reasons. Allow the user to force it to happen.
354 1.286 yamt *
355 1.284 elad * Set the mount level flags.
356 1.284 elad */
357 1.286 yamt mp->mnt_flag = flags &
358 1.286 yamt (MNT_FORCE | MNT_NOSUID | MNT_NOEXEC | MNT_NODEV |
359 1.284 elad MNT_SYNCHRONOUS | MNT_UNION | MNT_ASYNC | MNT_NOCOREDUMP |
360 1.284 elad MNT_NOATIME | MNT_NODEVMTIME | MNT_SYMPERM | MNT_SOFTDEP |
361 1.370 simonb MNT_LOG | MNT_IGNORE | MNT_RDONLY);
362 1.284 elad
363 1.332 pooka error = VFS_MOUNT(mp, path, data, data_len);
364 1.286 yamt mp->mnt_flag &= ~MNT_OP_FLAGS;
365 1.232 jmmv
366 1.31 cgd /*
367 1.31 cgd * Put the new filesystem on the mount list after root.
368 1.31 cgd */
369 1.31 cgd cache_purge(vp);
370 1.320 dsl if (error != 0) {
371 1.283 elad vp->v_mountedhere = NULL;
372 1.358 ad mutex_exit(&mp->mnt_updating);
373 1.354 ad vfs_unbusy(mp, false, NULL);
374 1.358 ad vfs_destroy(mp);
375 1.320 dsl return error;
376 1.31 cgd }
377 1.283 elad
378 1.320 dsl mp->mnt_iflag &= ~IMNT_WANTRDWR;
379 1.345 ad mutex_enter(&mountlist_lock);
380 1.320 dsl vp->v_mountedhere = mp;
381 1.320 dsl CIRCLEQ_INSERT_TAIL(&mountlist, mp, mnt_list);
382 1.329 ad mutex_exit(&mountlist_lock);
383 1.337 ad vn_restorerecurse(vp, recurse);
384 1.320 dsl VOP_UNLOCK(vp, 0);
385 1.320 dsl checkdirs(vp);
386 1.320 dsl if ((mp->mnt_flag & (MNT_RDONLY | MNT_ASYNC)) == 0)
387 1.320 dsl error = vfs_allocate_syncvnode(mp);
388 1.347 ad /* Hold an additional reference to the mount across VFS_START(). */
389 1.358 ad mutex_exit(&mp->mnt_updating);
390 1.354 ad vfs_unbusy(mp, true, NULL);
391 1.332 pooka (void) VFS_STATVFS(mp, &mp->mnt_stat);
392 1.332 pooka error = VFS_START(mp, 0);
393 1.372 ad if (error)
394 1.320 dsl vrele(vp);
395 1.347 ad /* Drop reference held for VFS_START(). */
396 1.358 ad vfs_destroy(mp);
397 1.320 dsl *vpp = NULL;
398 1.320 dsl return error;
399 1.283 elad }
400 1.283 elad
401 1.283 elad static int
402 1.283 elad mount_getargs(struct lwp *l, struct vnode *vp, const char *path, int flags,
403 1.324 pooka void *data, size_t *data_len)
404 1.283 elad {
405 1.283 elad struct mount *mp;
406 1.283 elad int error;
407 1.283 elad
408 1.289 elad /* If MNT_GETARGS is specified, it should be the only flag. */
409 1.320 dsl if (flags & ~MNT_GETARGS)
410 1.320 dsl return EINVAL;
411 1.289 elad
412 1.283 elad mp = vp->v_mount;
413 1.283 elad
414 1.292 elad /* XXX: probably some notion of "can see" here if we want isolation. */
415 1.292 elad error = kauth_authorize_system(l->l_cred, KAUTH_SYSTEM_MOUNT,
416 1.292 elad KAUTH_REQ_SYSTEM_MOUNT_GET, mp, data, NULL);
417 1.292 elad if (error)
418 1.320 dsl return error;
419 1.292 elad
420 1.329 ad if ((vp->v_vflag & VV_ROOT) == 0)
421 1.320 dsl return EINVAL;
422 1.283 elad
423 1.358 ad if (vfs_busy(mp, NULL))
424 1.320 dsl return EPERM;
425 1.283 elad
426 1.358 ad mutex_enter(&mp->mnt_updating);
427 1.286 yamt mp->mnt_flag &= ~MNT_OP_FLAGS;
428 1.286 yamt mp->mnt_flag |= MNT_GETARGS;
429 1.332 pooka error = VFS_MOUNT(mp, path, data, data_len);
430 1.286 yamt mp->mnt_flag &= ~MNT_OP_FLAGS;
431 1.358 ad mutex_exit(&mp->mnt_updating);
432 1.283 elad
433 1.354 ad vfs_unbusy(mp, false, NULL);
434 1.283 elad return (error);
435 1.283 elad }
436 1.283 elad
437 1.321 dsl int
438 1.335 dsl sys___mount50(struct lwp *l, const struct sys___mount50_args *uap, register_t *retval)
439 1.321 dsl {
440 1.335 dsl /* {
441 1.321 dsl syscallarg(const char *) type;
442 1.321 dsl syscallarg(const char *) path;
443 1.321 dsl syscallarg(int) flags;
444 1.321 dsl syscallarg(void *) data;
445 1.321 dsl syscallarg(size_t) data_len;
446 1.335 dsl } */
447 1.321 dsl
448 1.321 dsl return do_sys_mount(l, NULL, SCARG(uap, type), SCARG(uap, path),
449 1.321 dsl SCARG(uap, flags), SCARG(uap, data), UIO_USERSPACE,
450 1.321 dsl SCARG(uap, data_len), retval);
451 1.321 dsl }
452 1.320 dsl
453 1.320 dsl int
454 1.320 dsl do_sys_mount(struct lwp *l, struct vfsops *vfsops, const char *type,
455 1.320 dsl const char *path, int flags, void *data, enum uio_seg data_seg,
456 1.320 dsl size_t data_len, register_t *retval)
457 1.320 dsl {
458 1.283 elad struct vnode *vp;
459 1.283 elad struct nameidata nd;
460 1.320 dsl void *data_buf = data;
461 1.337 ad u_int recurse;
462 1.283 elad int error;
463 1.283 elad
464 1.283 elad /*
465 1.283 elad * Get vnode to be covered
466 1.283 elad */
467 1.334 pooka NDINIT(&nd, LOOKUP, FOLLOW | TRYEMULROOT, UIO_USERSPACE, path);
468 1.283 elad if ((error = namei(&nd)) != 0)
469 1.283 elad return (error);
470 1.283 elad vp = nd.ni_vp;
471 1.283 elad
472 1.283 elad /*
473 1.283 elad * A lookup in VFS_MOUNT might result in an attempt to
474 1.283 elad * lock this vnode again, so make the lock recursive.
475 1.283 elad */
476 1.320 dsl if (vfsops == NULL) {
477 1.361 ad if (flags & (MNT_GETARGS | MNT_UPDATE)) {
478 1.361 ad vn_lock(vp, LK_EXCLUSIVE | LK_RETRY);
479 1.361 ad recurse = vn_setrecurse(vp);
480 1.320 dsl vfsops = vp->v_mount->mnt_op;
481 1.361 ad } else {
482 1.320 dsl /* 'type' is userspace */
483 1.320 dsl error = mount_get_vfsops(type, &vfsops);
484 1.361 ad vn_lock(vp, LK_EXCLUSIVE | LK_RETRY);
485 1.361 ad recurse = vn_setrecurse(vp);
486 1.320 dsl if (error != 0)
487 1.320 dsl goto done;
488 1.320 dsl }
489 1.361 ad } else {
490 1.361 ad vn_lock(vp, LK_EXCLUSIVE | LK_RETRY);
491 1.361 ad recurse = vn_setrecurse(vp);
492 1.320 dsl }
493 1.320 dsl
494 1.320 dsl if (data != NULL && data_seg == UIO_USERSPACE) {
495 1.320 dsl if (data_len == 0) {
496 1.320 dsl /* No length supplied, use default for filesystem */
497 1.320 dsl data_len = vfsops->vfs_min_mount_data;
498 1.320 dsl if (data_len > VFS_MAX_MOUNT_DATA) {
499 1.320 dsl error = EINVAL;
500 1.320 dsl goto done;
501 1.320 dsl }
502 1.378 ad /*
503 1.378 ad * Hopefully a longer buffer won't make copyin() fail.
504 1.378 ad * For compatibility with 3.0 and earlier.
505 1.378 ad */
506 1.320 dsl if (flags & MNT_UPDATE
507 1.320 dsl && data_len < sizeof (struct mnt_export_args30))
508 1.320 dsl data_len = sizeof (struct mnt_export_args30);
509 1.320 dsl }
510 1.384 yamt data_buf = kmem_alloc(data_len, KM_SLEEP);
511 1.283 elad
512 1.320 dsl /* NFS needs the buffer even for mnt_getargs .... */
513 1.320 dsl error = copyin(data, data_buf, data_len);
514 1.320 dsl if (error != 0)
515 1.320 dsl goto done;
516 1.320 dsl }
517 1.320 dsl
518 1.320 dsl if (flags & MNT_GETARGS) {
519 1.320 dsl if (data_len == 0) {
520 1.320 dsl error = EINVAL;
521 1.320 dsl goto done;
522 1.320 dsl }
523 1.324 pooka error = mount_getargs(l, vp, path, flags, data_buf, &data_len);
524 1.320 dsl if (error != 0)
525 1.320 dsl goto done;
526 1.320 dsl if (data_seg == UIO_USERSPACE)
527 1.320 dsl error = copyout(data_buf, data, data_len);
528 1.320 dsl *retval = data_len;
529 1.320 dsl } else if (flags & MNT_UPDATE) {
530 1.324 pooka error = mount_update(l, vp, path, flags, data_buf, &data_len);
531 1.283 elad } else {
532 1.283 elad /* Locking is handled internally in mount_domount(). */
533 1.320 dsl error = mount_domount(l, &vp, vfsops, path, flags, data_buf,
534 1.337 ad &data_len, recurse);
535 1.283 elad }
536 1.283 elad
537 1.320 dsl done:
538 1.337 ad if (vp != NULL) {
539 1.337 ad vn_restorerecurse(vp, recurse);
540 1.337 ad vput(vp);
541 1.337 ad }
542 1.320 dsl if (data_buf != data)
543 1.384 yamt kmem_free(data_buf, data_len);
544 1.31 cgd return (error);
545 1.31 cgd }
546 1.31 cgd
547 1.31 cgd /*
548 1.43 mycroft * Scan all active processes to see if any of them have a current
549 1.43 mycroft * or root directory onto which the new filesystem has just been
550 1.43 mycroft * mounted. If so, replace them with the new mount point.
551 1.43 mycroft */
552 1.63 christos void
553 1.221 thorpej checkdirs(struct vnode *olddp)
554 1.43 mycroft {
555 1.134 thorpej struct cwdinfo *cwdi;
556 1.355 ad struct vnode *newdp, *rele1, *rele2;
557 1.43 mycroft struct proc *p;
558 1.355 ad bool retry;
559 1.43 mycroft
560 1.43 mycroft if (olddp->v_usecount == 1)
561 1.43 mycroft return;
562 1.189 thorpej if (VFS_ROOT(olddp->v_mountedhere, &newdp))
563 1.43 mycroft panic("mount: lost mount");
564 1.355 ad
565 1.355 ad do {
566 1.355 ad retry = false;
567 1.355 ad mutex_enter(proc_lock);
568 1.355 ad PROCLIST_FOREACH(p, &allproc) {
569 1.355 ad if ((p->p_flag & PK_MARKER) != 0)
570 1.355 ad continue;
571 1.355 ad if ((cwdi = p->p_cwdi) == NULL)
572 1.355 ad continue;
573 1.355 ad /*
574 1.355 ad * Can't change to the old directory any more,
575 1.355 ad * so even if we see a stale value it's not a
576 1.355 ad * problem.
577 1.355 ad */
578 1.355 ad if (cwdi->cwdi_cdir != olddp &&
579 1.355 ad cwdi->cwdi_rdir != olddp)
580 1.355 ad continue;
581 1.355 ad retry = true;
582 1.355 ad rele1 = NULL;
583 1.355 ad rele2 = NULL;
584 1.355 ad atomic_inc_uint(&cwdi->cwdi_refcnt);
585 1.355 ad mutex_exit(proc_lock);
586 1.355 ad rw_enter(&cwdi->cwdi_lock, RW_WRITER);
587 1.355 ad if (cwdi->cwdi_cdir == olddp) {
588 1.355 ad rele1 = cwdi->cwdi_cdir;
589 1.355 ad VREF(newdp);
590 1.355 ad cwdi->cwdi_cdir = newdp;
591 1.355 ad }
592 1.355 ad if (cwdi->cwdi_rdir == olddp) {
593 1.355 ad rele2 = cwdi->cwdi_rdir;
594 1.355 ad VREF(newdp);
595 1.355 ad cwdi->cwdi_rdir = newdp;
596 1.355 ad }
597 1.355 ad rw_exit(&cwdi->cwdi_lock);
598 1.355 ad cwdfree(cwdi);
599 1.355 ad if (rele1 != NULL)
600 1.355 ad vrele(rele1);
601 1.355 ad if (rele2 != NULL)
602 1.355 ad vrele(rele2);
603 1.355 ad mutex_enter(proc_lock);
604 1.355 ad break;
605 1.43 mycroft }
606 1.355 ad mutex_exit(proc_lock);
607 1.355 ad } while (retry);
608 1.355 ad
609 1.43 mycroft if (rootvnode == olddp) {
610 1.43 mycroft vrele(rootvnode);
611 1.43 mycroft VREF(newdp);
612 1.43 mycroft rootvnode = newdp;
613 1.43 mycroft }
614 1.43 mycroft vput(newdp);
615 1.43 mycroft }
616 1.43 mycroft
617 1.43 mycroft /*
618 1.31 cgd * Unmount a file system.
619 1.31 cgd *
620 1.31 cgd * Note: unmount takes a path to the vnode mounted on as argument,
621 1.31 cgd * not special file (as before).
622 1.31 cgd */
623 1.31 cgd /* ARGSUSED */
624 1.63 christos int
625 1.335 dsl sys_unmount(struct lwp *l, const struct sys_unmount_args *uap, register_t *retval)
626 1.56 thorpej {
627 1.335 dsl /* {
628 1.74 cgd syscallarg(const char *) path;
629 1.35 cgd syscallarg(int) flags;
630 1.335 dsl } */
631 1.155 augustss struct vnode *vp;
632 1.31 cgd struct mount *mp;
633 1.31 cgd int error;
634 1.31 cgd struct nameidata nd;
635 1.31 cgd
636 1.310 dsl NDINIT(&nd, LOOKUP, FOLLOW | LOCKLEAF | TRYEMULROOT, UIO_USERSPACE,
637 1.334 pooka SCARG(uap, path));
638 1.63 christos if ((error = namei(&nd)) != 0)
639 1.31 cgd return (error);
640 1.31 cgd vp = nd.ni_vp;
641 1.43 mycroft mp = vp->v_mount;
642 1.358 ad atomic_inc_uint(&mp->mnt_refcnt);
643 1.345 ad VOP_UNLOCK(vp, 0);
644 1.31 cgd
645 1.295 elad error = kauth_authorize_system(l->l_cred, KAUTH_SYSTEM_MOUNT,
646 1.295 elad KAUTH_REQ_SYSTEM_MOUNT_UNMOUNT, mp, NULL, NULL);
647 1.295 elad if (error) {
648 1.345 ad vrele(vp);
649 1.358 ad vfs_destroy(mp);
650 1.31 cgd return (error);
651 1.31 cgd }
652 1.31 cgd
653 1.31 cgd /*
654 1.47 mycroft * Don't allow unmounting the root file system.
655 1.47 mycroft */
656 1.47 mycroft if (mp->mnt_flag & MNT_ROOTFS) {
657 1.345 ad vrele(vp);
658 1.358 ad vfs_destroy(mp);
659 1.47 mycroft return (EINVAL);
660 1.47 mycroft }
661 1.47 mycroft
662 1.47 mycroft /*
663 1.31 cgd * Must be the root of the filesystem
664 1.31 cgd */
665 1.329 ad if ((vp->v_vflag & VV_ROOT) == 0) {
666 1.345 ad vrele(vp);
667 1.358 ad vfs_destroy(mp);
668 1.31 cgd return (EINVAL);
669 1.31 cgd }
670 1.78 fvdl
671 1.359 ad vrele(vp);
672 1.358 ad error = dounmount(mp, SCARG(uap, flags), l);
673 1.374 ad vfs_destroy(mp);
674 1.358 ad return error;
675 1.31 cgd }
676 1.31 cgd
677 1.31 cgd /*
678 1.358 ad * Do the actual file system unmount. File system is assumed to have
679 1.358 ad * been locked by the caller.
680 1.358 ad *
681 1.375 wiz * => Caller hold reference to the mount, explicitly for dounmount().
682 1.31 cgd */
683 1.63 christos int
684 1.234 christos dounmount(struct mount *mp, int flags, struct lwp *l)
685 1.31 cgd {
686 1.31 cgd struct vnode *coveredvp;
687 1.31 cgd int error;
688 1.140 sommerfe int async;
689 1.162 fvdl int used_syncer;
690 1.31 cgd
691 1.256 elad #if NVERIEXEC > 0
692 1.279 elad error = veriexec_unmountchk(mp);
693 1.279 elad if (error)
694 1.279 elad return (error);
695 1.256 elad #endif /* NVERIEXEC > 0 */
696 1.251 elad
697 1.358 ad /*
698 1.358 ad * XXX Freeze syncer. Must do this before locking the
699 1.358 ad * mount point. See dounmount() for details.
700 1.358 ad */
701 1.358 ad mutex_enter(&syncer_mutex);
702 1.358 ad rw_enter(&mp->mnt_unmounting, RW_WRITER);
703 1.358 ad if ((mp->mnt_iflag & IMNT_GONE) != 0) {
704 1.358 ad rw_exit(&mp->mnt_unmounting);
705 1.358 ad mutex_exit(&syncer_mutex);
706 1.358 ad return ENOENT;
707 1.358 ad }
708 1.358 ad
709 1.162 fvdl used_syncer = (mp->mnt_syncer != NULL);
710 1.162 fvdl
711 1.148 fvdl /*
712 1.165 thorpej * XXX Syncer must be frozen when we get here. This should really
713 1.165 thorpej * be done on a per-mountpoint basis, but especially the softdep
714 1.227 jmmv * code possibly called from the syncer doesn't exactly work on a
715 1.165 thorpej * per-mountpoint basis, so the softdep code would become a maze
716 1.165 thorpej * of vfs_busy() calls.
717 1.165 thorpej *
718 1.300 ad * The caller of dounmount() must acquire syncer_mutex because
719 1.300 ad * the syncer itself acquires locks in syncer_mutex -> vfs_busy
720 1.165 thorpej * order, and we must preserve that order to avoid deadlock.
721 1.165 thorpej *
722 1.165 thorpej * So, if the file system did not use the syncer, now is
723 1.300 ad * the time to release the syncer_mutex.
724 1.148 fvdl */
725 1.165 thorpej if (used_syncer == 0)
726 1.300 ad mutex_exit(&syncer_mutex);
727 1.148 fvdl
728 1.196 dbj mp->mnt_iflag |= IMNT_UNMOUNT;
729 1.141 sommerfe async = mp->mnt_flag & MNT_ASYNC;
730 1.151 mycroft mp->mnt_flag &= ~MNT_ASYNC;
731 1.31 cgd cache_purgevfs(mp); /* remove cache entries for this file sys */
732 1.160 mycroft if (mp->mnt_syncer != NULL)
733 1.160 mycroft vfs_deallocate_syncvnode(mp);
734 1.209 hannken error = 0;
735 1.209 hannken if ((mp->mnt_flag & MNT_RDONLY) == 0) {
736 1.371 hannken error = VFS_SYNC(mp, MNT_WAIT, l->l_cred);
737 1.209 hannken }
738 1.342 ad vfs_scrubvnlist(mp);
739 1.209 hannken if (error == 0 || (flags & MNT_FORCE))
740 1.332 pooka error = VFS_UNMOUNT(mp, flags);
741 1.31 cgd if (error) {
742 1.151 mycroft if ((mp->mnt_flag & (MNT_RDONLY | MNT_ASYNC)) == 0)
743 1.148 fvdl (void) vfs_allocate_syncvnode(mp);
744 1.196 dbj mp->mnt_iflag &= ~IMNT_UNMOUNT;
745 1.140 sommerfe mp->mnt_flag |= async;
746 1.358 ad rw_exit(&mp->mnt_unmounting);
747 1.162 fvdl if (used_syncer)
748 1.300 ad mutex_exit(&syncer_mutex);
749 1.142 sommerfe return (error);
750 1.113 fvdl }
751 1.338 ad vfs_scrubvnlist(mp);
752 1.358 ad mutex_enter(&mountlist_lock);
753 1.297 hannken if ((coveredvp = mp->mnt_vnodecovered) != NULLVP)
754 1.113 fvdl coveredvp->v_mountedhere = NULL;
755 1.358 ad CIRCLEQ_REMOVE(&mountlist, mp, mnt_list);
756 1.358 ad mp->mnt_iflag |= IMNT_GONE;
757 1.358 ad mutex_exit(&mountlist_lock);
758 1.273 reinoud if (TAILQ_FIRST(&mp->mnt_vnodelist) != NULL)
759 1.113 fvdl panic("unmount: dangling vnode");
760 1.162 fvdl if (used_syncer)
761 1.300 ad mutex_exit(&syncer_mutex);
762 1.231 jmmv vfs_hooks_unmount(mp);
763 1.358 ad rw_exit(&mp->mnt_unmounting);
764 1.374 ad vfs_destroy(mp); /* reference from mount() */
765 1.345 ad if (coveredvp != NULLVP)
766 1.345 ad vrele(coveredvp);
767 1.113 fvdl return (0);
768 1.31 cgd }
769 1.31 cgd
770 1.31 cgd /*
771 1.31 cgd * Sync each mounted filesystem.
772 1.31 cgd */
773 1.31 cgd #ifdef DEBUG
774 1.31 cgd int syncprt = 0;
775 1.31 cgd struct ctldebug debug0 = { "syncprt", &syncprt };
776 1.31 cgd #endif
777 1.31 cgd
778 1.31 cgd /* ARGSUSED */
779 1.63 christos int
780 1.335 dsl sys_sync(struct lwp *l, const void *v, register_t *retval)
781 1.31 cgd {
782 1.155 augustss struct mount *mp, *nmp;
783 1.31 cgd int asyncflag;
784 1.257 ad
785 1.257 ad if (l == NULL)
786 1.257 ad l = &lwp0;
787 1.31 cgd
788 1.329 ad mutex_enter(&mountlist_lock);
789 1.353 ad for (mp = CIRCLEQ_FIRST(&mountlist); mp != (void *)&mountlist;
790 1.353 ad mp = nmp) {
791 1.358 ad if (vfs_busy(mp, &nmp)) {
792 1.113 fvdl continue;
793 1.113 fvdl }
794 1.358 ad mutex_enter(&mp->mnt_updating);
795 1.307 hannken if ((mp->mnt_flag & MNT_RDONLY) == 0) {
796 1.31 cgd asyncflag = mp->mnt_flag & MNT_ASYNC;
797 1.31 cgd mp->mnt_flag &= ~MNT_ASYNC;
798 1.332 pooka VFS_SYNC(mp, MNT_NOWAIT, l->l_cred);
799 1.31 cgd if (asyncflag)
800 1.113 fvdl mp->mnt_flag |= MNT_ASYNC;
801 1.31 cgd }
802 1.358 ad mutex_exit(&mp->mnt_updating);
803 1.354 ad vfs_unbusy(mp, false, &nmp);
804 1.31 cgd }
805 1.329 ad mutex_exit(&mountlist_lock);
806 1.31 cgd #ifdef DEBUG
807 1.31 cgd if (syncprt)
808 1.31 cgd vfs_bufstats();
809 1.31 cgd #endif /* DEBUG */
810 1.31 cgd return (0);
811 1.31 cgd }
812 1.31 cgd
813 1.31 cgd /*
814 1.31 cgd * Change filesystem quotas.
815 1.31 cgd */
816 1.31 cgd /* ARGSUSED */
817 1.63 christos int
818 1.335 dsl sys_quotactl(struct lwp *l, const struct sys_quotactl_args *uap, register_t *retval)
819 1.56 thorpej {
820 1.335 dsl /* {
821 1.74 cgd syscallarg(const char *) path;
822 1.35 cgd syscallarg(int) cmd;
823 1.35 cgd syscallarg(int) uid;
824 1.272 christos syscallarg(void *) arg;
825 1.335 dsl } */
826 1.155 augustss struct mount *mp;
827 1.31 cgd int error;
828 1.31 cgd struct nameidata nd;
829 1.31 cgd
830 1.326 pooka NDINIT(&nd, LOOKUP, FOLLOW | TRYEMULROOT, UIO_USERSPACE,
831 1.334 pooka SCARG(uap, path));
832 1.63 christos if ((error = namei(&nd)) != 0)
833 1.31 cgd return (error);
834 1.307 hannken mp = nd.ni_vp->v_mount;
835 1.197 hannken error = VFS_QUOTACTL(mp, SCARG(uap, cmd), SCARG(uap, uid),
836 1.332 pooka SCARG(uap, arg));
837 1.326 pooka vrele(nd.ni_vp);
838 1.197 hannken return (error);
839 1.31 cgd }
840 1.31 cgd
841 1.206 christos int
842 1.234 christos dostatvfs(struct mount *mp, struct statvfs *sp, struct lwp *l, int flags,
843 1.185 christos int root)
844 1.185 christos {
845 1.234 christos struct cwdinfo *cwdi = l->l_proc->p_cwdi;
846 1.185 christos int error = 0;
847 1.185 christos
848 1.185 christos /*
849 1.185 christos * If MNT_NOWAIT or MNT_LAZY is specified, do not
850 1.204 dbj * refresh the fsstat cache. MNT_WAIT or MNT_LAZY
851 1.185 christos * overrides MNT_NOWAIT.
852 1.185 christos */
853 1.185 christos if (flags == MNT_NOWAIT || flags == MNT_LAZY ||
854 1.185 christos (flags != MNT_WAIT && flags != 0)) {
855 1.185 christos memcpy(sp, &mp->mnt_stat, sizeof(*sp));
856 1.185 christos goto done;
857 1.185 christos }
858 1.205 junyoung
859 1.211 jdolecek /* Get the filesystem stats now */
860 1.211 jdolecek memset(sp, 0, sizeof(*sp));
861 1.332 pooka if ((error = VFS_STATVFS(mp, sp)) != 0) {
862 1.185 christos return error;
863 1.185 christos }
864 1.185 christos
865 1.185 christos if (cwdi->cwdi_rdir == NULL)
866 1.185 christos (void)memcpy(&mp->mnt_stat, sp, sizeof(mp->mnt_stat));
867 1.185 christos done:
868 1.185 christos if (cwdi->cwdi_rdir != NULL) {
869 1.185 christos size_t len;
870 1.185 christos char *bp;
871 1.364 christos char c;
872 1.236 yamt char *path = PNBUF_GET();
873 1.185 christos
874 1.185 christos bp = path + MAXPATHLEN;
875 1.185 christos *--bp = '\0';
876 1.328 ad rw_enter(&cwdi->cwdi_lock, RW_READER);
877 1.185 christos error = getcwd_common(cwdi->cwdi_rdir, rootvnode, &bp, path,
878 1.234 christos MAXPATHLEN / 2, 0, l);
879 1.328 ad rw_exit(&cwdi->cwdi_lock);
880 1.185 christos if (error) {
881 1.236 yamt PNBUF_PUT(path);
882 1.185 christos return error;
883 1.185 christos }
884 1.185 christos len = strlen(bp);
885 1.185 christos /*
886 1.185 christos * for mount points that are below our root, we can see
887 1.185 christos * them, so we fix up the pathname and return them. The
888 1.185 christos * rest we cannot see, so we don't allow viewing the
889 1.185 christos * data.
890 1.185 christos */
891 1.364 christos if (strncmp(bp, sp->f_mntonname, len) == 0 &&
892 1.364 christos ((c = sp->f_mntonname[len]) == '/' || c == '\0')) {
893 1.364 christos (void)strlcpy(sp->f_mntonname, &sp->f_mntonname[len],
894 1.187 itojun sizeof(sp->f_mntonname));
895 1.185 christos if (sp->f_mntonname[0] == '\0')
896 1.187 itojun (void)strlcpy(sp->f_mntonname, "/",
897 1.187 itojun sizeof(sp->f_mntonname));
898 1.185 christos } else {
899 1.185 christos if (root)
900 1.187 itojun (void)strlcpy(sp->f_mntonname, "/",
901 1.187 itojun sizeof(sp->f_mntonname));
902 1.185 christos else
903 1.185 christos error = EPERM;
904 1.185 christos }
905 1.236 yamt PNBUF_PUT(path);
906 1.185 christos }
907 1.206 christos sp->f_flag = mp->mnt_flag & MNT_VISFLAGMASK;
908 1.185 christos return error;
909 1.185 christos }
910 1.185 christos
911 1.31 cgd /*
912 1.311 dsl * Get filesystem statistics by path.
913 1.31 cgd */
914 1.311 dsl int
915 1.311 dsl do_sys_pstatvfs(struct lwp *l, const char *path, int flags, struct statvfs *sb)
916 1.311 dsl {
917 1.311 dsl struct mount *mp;
918 1.311 dsl int error;
919 1.311 dsl struct nameidata nd;
920 1.311 dsl
921 1.334 pooka NDINIT(&nd, LOOKUP, FOLLOW | TRYEMULROOT, UIO_USERSPACE, path);
922 1.311 dsl if ((error = namei(&nd)) != 0)
923 1.311 dsl return error;
924 1.311 dsl mp = nd.ni_vp->v_mount;
925 1.311 dsl error = dostatvfs(mp, sb, l, flags, 1);
926 1.311 dsl vrele(nd.ni_vp);
927 1.311 dsl return error;
928 1.311 dsl }
929 1.311 dsl
930 1.31 cgd /* ARGSUSED */
931 1.63 christos int
932 1.335 dsl sys_statvfs1(struct lwp *l, const struct sys_statvfs1_args *uap, register_t *retval)
933 1.56 thorpej {
934 1.335 dsl /* {
935 1.74 cgd syscallarg(const char *) path;
936 1.206 christos syscallarg(struct statvfs *) buf;
937 1.206 christos syscallarg(int) flags;
938 1.335 dsl } */
939 1.241 yamt struct statvfs *sb;
940 1.31 cgd int error;
941 1.31 cgd
942 1.241 yamt sb = STATVFSBUF_GET();
943 1.311 dsl error = do_sys_pstatvfs(l, SCARG(uap, path), SCARG(uap, flags), sb);
944 1.311 dsl if (error == 0)
945 1.241 yamt error = copyout(sb, SCARG(uap, buf), sizeof(*sb));
946 1.241 yamt STATVFSBUF_PUT(sb);
947 1.241 yamt return error;
948 1.31 cgd }
949 1.31 cgd
950 1.31 cgd /*
951 1.311 dsl * Get filesystem statistics by fd.
952 1.31 cgd */
953 1.311 dsl int
954 1.311 dsl do_sys_fstatvfs(struct lwp *l, int fd, int flags, struct statvfs *sb)
955 1.311 dsl {
956 1.346 ad file_t *fp;
957 1.311 dsl struct mount *mp;
958 1.311 dsl int error;
959 1.311 dsl
960 1.346 ad /* fd_getvnode() will use the descriptor for us */
961 1.346 ad if ((error = fd_getvnode(fd, &fp)) != 0)
962 1.311 dsl return (error);
963 1.311 dsl mp = ((struct vnode *)fp->f_data)->v_mount;
964 1.346 ad error = dostatvfs(mp, sb, curlwp, flags, 1);
965 1.346 ad fd_putfile(fd);
966 1.311 dsl return error;
967 1.311 dsl }
968 1.311 dsl
969 1.31 cgd /* ARGSUSED */
970 1.63 christos int
971 1.335 dsl sys_fstatvfs1(struct lwp *l, const struct sys_fstatvfs1_args *uap, register_t *retval)
972 1.56 thorpej {
973 1.335 dsl /* {
974 1.35 cgd syscallarg(int) fd;
975 1.206 christos syscallarg(struct statvfs *) buf;
976 1.206 christos syscallarg(int) flags;
977 1.335 dsl } */
978 1.241 yamt struct statvfs *sb;
979 1.31 cgd int error;
980 1.31 cgd
981 1.241 yamt sb = STATVFSBUF_GET();
982 1.311 dsl error = do_sys_fstatvfs(l, SCARG(uap, fd), SCARG(uap, flags), sb);
983 1.316 dsl if (error == 0)
984 1.311 dsl error = copyout(sb, SCARG(uap, buf), sizeof(*sb));
985 1.241 yamt STATVFSBUF_PUT(sb);
986 1.185 christos return error;
987 1.31 cgd }
988 1.31 cgd
989 1.185 christos
990 1.31 cgd /*
991 1.31 cgd * Get statistics on all filesystems.
992 1.31 cgd */
993 1.63 christos int
994 1.311 dsl do_sys_getvfsstat(struct lwp *l, void *sfsp, size_t bufsize, int flags,
995 1.311 dsl int (*copyfn)(const void *, void *, size_t), size_t entry_sz,
996 1.311 dsl register_t *retval)
997 1.56 thorpej {
998 1.185 christos int root = 0;
999 1.179 thorpej struct proc *p = l->l_proc;
1000 1.155 augustss struct mount *mp, *nmp;
1001 1.241 yamt struct statvfs *sb;
1002 1.206 christos size_t count, maxcount;
1003 1.206 christos int error = 0;
1004 1.31 cgd
1005 1.241 yamt sb = STATVFSBUF_GET();
1006 1.311 dsl maxcount = bufsize / entry_sz;
1007 1.329 ad mutex_enter(&mountlist_lock);
1008 1.113 fvdl count = 0;
1009 1.176 matt for (mp = CIRCLEQ_FIRST(&mountlist); mp != (void *)&mountlist;
1010 1.176 matt mp = nmp) {
1011 1.358 ad if (vfs_busy(mp, &nmp)) {
1012 1.113 fvdl continue;
1013 1.113 fvdl }
1014 1.113 fvdl if (sfsp && count < maxcount) {
1015 1.311 dsl error = dostatvfs(mp, sb, l, flags, 0);
1016 1.185 christos if (error) {
1017 1.354 ad vfs_unbusy(mp, false, &nmp);
1018 1.365 christos error = 0;
1019 1.31 cgd continue;
1020 1.113 fvdl }
1021 1.311 dsl error = copyfn(sb, sfsp, entry_sz);
1022 1.133 mycroft if (error) {
1023 1.354 ad vfs_unbusy(mp, false, NULL);
1024 1.241 yamt goto out;
1025 1.133 mycroft }
1026 1.311 dsl sfsp = (char *)sfsp + entry_sz;
1027 1.241 yamt root |= strcmp(sb->f_mntonname, "/") == 0;
1028 1.31 cgd }
1029 1.31 cgd count++;
1030 1.354 ad vfs_unbusy(mp, false, &nmp);
1031 1.31 cgd }
1032 1.358 ad mutex_exit(&mountlist_lock);
1033 1.331 pooka
1034 1.185 christos if (root == 0 && p->p_cwdi->cwdi_rdir) {
1035 1.185 christos /*
1036 1.185 christos * fake a root entry
1037 1.185 christos */
1038 1.331 pooka error = dostatvfs(p->p_cwdi->cwdi_rdir->v_mount,
1039 1.331 pooka sb, l, flags, 1);
1040 1.311 dsl if (error != 0)
1041 1.241 yamt goto out;
1042 1.365 christos if (sfsp) {
1043 1.311 dsl error = copyfn(sb, sfsp, entry_sz);
1044 1.365 christos if (error != 0)
1045 1.365 christos goto out;
1046 1.365 christos }
1047 1.185 christos count++;
1048 1.185 christos }
1049 1.31 cgd if (sfsp && count > maxcount)
1050 1.31 cgd *retval = maxcount;
1051 1.31 cgd else
1052 1.31 cgd *retval = count;
1053 1.241 yamt out:
1054 1.241 yamt STATVFSBUF_PUT(sb);
1055 1.185 christos return error;
1056 1.31 cgd }
1057 1.31 cgd
1058 1.311 dsl int
1059 1.335 dsl sys_getvfsstat(struct lwp *l, const struct sys_getvfsstat_args *uap, register_t *retval)
1060 1.311 dsl {
1061 1.335 dsl /* {
1062 1.311 dsl syscallarg(struct statvfs *) buf;
1063 1.311 dsl syscallarg(size_t) bufsize;
1064 1.311 dsl syscallarg(int) flags;
1065 1.335 dsl } */
1066 1.311 dsl
1067 1.311 dsl return do_sys_getvfsstat(l, SCARG(uap, buf), SCARG(uap, bufsize),
1068 1.311 dsl SCARG(uap, flags), copyout, sizeof (struct statvfs), retval);
1069 1.311 dsl }
1070 1.311 dsl
1071 1.31 cgd /*
1072 1.31 cgd * Change current working directory to a given file descriptor.
1073 1.31 cgd */
1074 1.31 cgd /* ARGSUSED */
1075 1.63 christos int
1076 1.335 dsl sys_fchdir(struct lwp *l, const struct sys_fchdir_args *uap, register_t *retval)
1077 1.56 thorpej {
1078 1.335 dsl /* {
1079 1.35 cgd syscallarg(int) fd;
1080 1.335 dsl } */
1081 1.179 thorpej struct proc *p = l->l_proc;
1082 1.328 ad struct cwdinfo *cwdi;
1083 1.43 mycroft struct vnode *vp, *tdp;
1084 1.43 mycroft struct mount *mp;
1085 1.346 ad file_t *fp;
1086 1.346 ad int error, fd;
1087 1.31 cgd
1088 1.346 ad /* fd_getvnode() will use the descriptor for us */
1089 1.346 ad fd = SCARG(uap, fd);
1090 1.346 ad if ((error = fd_getvnode(fd, &fp)) != 0)
1091 1.31 cgd return (error);
1092 1.346 ad vp = fp->f_data;
1093 1.131 sommerfe
1094 1.43 mycroft VREF(vp);
1095 1.113 fvdl vn_lock(vp, LK_EXCLUSIVE | LK_RETRY);
1096 1.31 cgd if (vp->v_type != VDIR)
1097 1.31 cgd error = ENOTDIR;
1098 1.31 cgd else
1099 1.332 pooka error = VOP_ACCESS(vp, VEXEC, l->l_cred);
1100 1.303 pooka if (error) {
1101 1.303 pooka vput(vp);
1102 1.303 pooka goto out;
1103 1.303 pooka }
1104 1.304 pooka while ((mp = vp->v_mountedhere) != NULL) {
1105 1.358 ad error = vfs_busy(mp, NULL);
1106 1.298 chs vput(vp);
1107 1.357 xtraeme if (error != 0)
1108 1.356 ad goto out;
1109 1.189 thorpej error = VFS_ROOT(mp, &tdp);
1110 1.354 ad vfs_unbusy(mp, false, NULL);
1111 1.113 fvdl if (error)
1112 1.303 pooka goto out;
1113 1.43 mycroft vp = tdp;
1114 1.43 mycroft }
1115 1.113 fvdl VOP_UNLOCK(vp, 0);
1116 1.131 sommerfe
1117 1.131 sommerfe /*
1118 1.131 sommerfe * Disallow changing to a directory not under the process's
1119 1.131 sommerfe * current root directory (if there is one).
1120 1.131 sommerfe */
1121 1.328 ad cwdi = p->p_cwdi;
1122 1.328 ad rw_enter(&cwdi->cwdi_lock, RW_WRITER);
1123 1.234 christos if (cwdi->cwdi_rdir && !vn_isunder(vp, NULL, l)) {
1124 1.131 sommerfe vrele(vp);
1125 1.135 thorpej error = EPERM; /* operation not permitted */
1126 1.328 ad } else {
1127 1.328 ad vrele(cwdi->cwdi_cdir);
1128 1.328 ad cwdi->cwdi_cdir = vp;
1129 1.131 sommerfe }
1130 1.328 ad rw_exit(&cwdi->cwdi_lock);
1131 1.205 junyoung
1132 1.135 thorpej out:
1133 1.346 ad fd_putfile(fd);
1134 1.135 thorpej return (error);
1135 1.31 cgd }
1136 1.31 cgd
1137 1.31 cgd /*
1138 1.221 thorpej * Change this process's notion of the root directory to a given file
1139 1.221 thorpej * descriptor.
1140 1.131 sommerfe */
1141 1.131 sommerfe int
1142 1.335 dsl sys_fchroot(struct lwp *l, const struct sys_fchroot_args *uap, register_t *retval)
1143 1.131 sommerfe {
1144 1.179 thorpej struct proc *p = l->l_proc;
1145 1.328 ad struct cwdinfo *cwdi;
1146 1.131 sommerfe struct vnode *vp;
1147 1.346 ad file_t *fp;
1148 1.346 ad int error, fd = SCARG(uap, fd);
1149 1.131 sommerfe
1150 1.268 elad if ((error = kauth_authorize_system(l->l_cred, KAUTH_SYSTEM_CHROOT,
1151 1.268 elad KAUTH_REQ_SYSTEM_CHROOT_FCHROOT, NULL, NULL, NULL)) != 0)
1152 1.131 sommerfe return error;
1153 1.346 ad /* fd_getvnode() will use the descriptor for us */
1154 1.346 ad if ((error = fd_getvnode(SCARG(uap, fd), &fp)) != 0)
1155 1.131 sommerfe return error;
1156 1.346 ad vp = fp->f_data;
1157 1.131 sommerfe vn_lock(vp, LK_EXCLUSIVE | LK_RETRY);
1158 1.131 sommerfe if (vp->v_type != VDIR)
1159 1.131 sommerfe error = ENOTDIR;
1160 1.131 sommerfe else
1161 1.332 pooka error = VOP_ACCESS(vp, VEXEC, l->l_cred);
1162 1.131 sommerfe VOP_UNLOCK(vp, 0);
1163 1.131 sommerfe if (error)
1164 1.135 thorpej goto out;
1165 1.131 sommerfe VREF(vp);
1166 1.131 sommerfe
1167 1.131 sommerfe /*
1168 1.131 sommerfe * Prevent escaping from chroot by putting the root under
1169 1.131 sommerfe * the working directory. Silently chdir to / if we aren't
1170 1.131 sommerfe * already there.
1171 1.131 sommerfe */
1172 1.328 ad cwdi = p->p_cwdi;
1173 1.328 ad rw_enter(&cwdi->cwdi_lock, RW_WRITER);
1174 1.234 christos if (!vn_isunder(cwdi->cwdi_cdir, vp, l)) {
1175 1.131 sommerfe /*
1176 1.131 sommerfe * XXX would be more failsafe to change directory to a
1177 1.131 sommerfe * deadfs node here instead
1178 1.131 sommerfe */
1179 1.134 thorpej vrele(cwdi->cwdi_cdir);
1180 1.131 sommerfe VREF(vp);
1181 1.134 thorpej cwdi->cwdi_cdir = vp;
1182 1.131 sommerfe }
1183 1.205 junyoung
1184 1.134 thorpej if (cwdi->cwdi_rdir != NULL)
1185 1.134 thorpej vrele(cwdi->cwdi_rdir);
1186 1.134 thorpej cwdi->cwdi_rdir = vp;
1187 1.328 ad rw_exit(&cwdi->cwdi_lock);
1188 1.328 ad
1189 1.135 thorpej out:
1190 1.346 ad fd_putfile(fd);
1191 1.135 thorpej return (error);
1192 1.131 sommerfe }
1193 1.131 sommerfe
1194 1.131 sommerfe /*
1195 1.31 cgd * Change current working directory (``.'').
1196 1.31 cgd */
1197 1.31 cgd /* ARGSUSED */
1198 1.63 christos int
1199 1.335 dsl sys_chdir(struct lwp *l, const struct sys_chdir_args *uap, register_t *retval)
1200 1.56 thorpej {
1201 1.335 dsl /* {
1202 1.74 cgd syscallarg(const char *) path;
1203 1.335 dsl } */
1204 1.179 thorpej struct proc *p = l->l_proc;
1205 1.328 ad struct cwdinfo *cwdi;
1206 1.31 cgd int error;
1207 1.31 cgd struct nameidata nd;
1208 1.31 cgd
1209 1.310 dsl NDINIT(&nd, LOOKUP, FOLLOW | LOCKLEAF | TRYEMULROOT, UIO_USERSPACE,
1210 1.334 pooka SCARG(uap, path));
1211 1.234 christos if ((error = change_dir(&nd, l)) != 0)
1212 1.31 cgd return (error);
1213 1.328 ad cwdi = p->p_cwdi;
1214 1.328 ad rw_enter(&cwdi->cwdi_lock, RW_WRITER);
1215 1.134 thorpej vrele(cwdi->cwdi_cdir);
1216 1.134 thorpej cwdi->cwdi_cdir = nd.ni_vp;
1217 1.328 ad rw_exit(&cwdi->cwdi_lock);
1218 1.31 cgd return (0);
1219 1.31 cgd }
1220 1.31 cgd
1221 1.31 cgd /*
1222 1.31 cgd * Change notion of root (``/'') directory.
1223 1.31 cgd */
1224 1.31 cgd /* ARGSUSED */
1225 1.63 christos int
1226 1.335 dsl sys_chroot(struct lwp *l, const struct sys_chroot_args *uap, register_t *retval)
1227 1.56 thorpej {
1228 1.335 dsl /* {
1229 1.74 cgd syscallarg(const char *) path;
1230 1.335 dsl } */
1231 1.179 thorpej struct proc *p = l->l_proc;
1232 1.328 ad struct cwdinfo *cwdi;
1233 1.131 sommerfe struct vnode *vp;
1234 1.31 cgd int error;
1235 1.31 cgd struct nameidata nd;
1236 1.31 cgd
1237 1.268 elad if ((error = kauth_authorize_system(l->l_cred, KAUTH_SYSTEM_CHROOT,
1238 1.268 elad KAUTH_REQ_SYSTEM_CHROOT_CHROOT, NULL, NULL, NULL)) != 0)
1239 1.31 cgd return (error);
1240 1.310 dsl NDINIT(&nd, LOOKUP, FOLLOW | LOCKLEAF | TRYEMULROOT, UIO_USERSPACE,
1241 1.334 pooka SCARG(uap, path));
1242 1.234 christos if ((error = change_dir(&nd, l)) != 0)
1243 1.31 cgd return (error);
1244 1.328 ad
1245 1.328 ad cwdi = p->p_cwdi;
1246 1.328 ad rw_enter(&cwdi->cwdi_lock, RW_WRITER);
1247 1.134 thorpej if (cwdi->cwdi_rdir != NULL)
1248 1.134 thorpej vrele(cwdi->cwdi_rdir);
1249 1.131 sommerfe vp = nd.ni_vp;
1250 1.134 thorpej cwdi->cwdi_rdir = vp;
1251 1.131 sommerfe
1252 1.131 sommerfe /*
1253 1.131 sommerfe * Prevent escaping from chroot by putting the root under
1254 1.131 sommerfe * the working directory. Silently chdir to / if we aren't
1255 1.131 sommerfe * already there.
1256 1.131 sommerfe */
1257 1.234 christos if (!vn_isunder(cwdi->cwdi_cdir, vp, l)) {
1258 1.131 sommerfe /*
1259 1.131 sommerfe * XXX would be more failsafe to change directory to a
1260 1.131 sommerfe * deadfs node here instead
1261 1.131 sommerfe */
1262 1.134 thorpej vrele(cwdi->cwdi_cdir);
1263 1.131 sommerfe VREF(vp);
1264 1.134 thorpej cwdi->cwdi_cdir = vp;
1265 1.131 sommerfe }
1266 1.328 ad rw_exit(&cwdi->cwdi_lock);
1267 1.205 junyoung
1268 1.31 cgd return (0);
1269 1.31 cgd }
1270 1.31 cgd
1271 1.31 cgd /*
1272 1.31 cgd * Common routine for chroot and chdir.
1273 1.31 cgd */
1274 1.31 cgd static int
1275 1.234 christos change_dir(struct nameidata *ndp, struct lwp *l)
1276 1.31 cgd {
1277 1.31 cgd struct vnode *vp;
1278 1.31 cgd int error;
1279 1.31 cgd
1280 1.63 christos if ((error = namei(ndp)) != 0)
1281 1.31 cgd return (error);
1282 1.31 cgd vp = ndp->ni_vp;
1283 1.31 cgd if (vp->v_type != VDIR)
1284 1.31 cgd error = ENOTDIR;
1285 1.31 cgd else
1286 1.332 pooka error = VOP_ACCESS(vp, VEXEC, l->l_cred);
1287 1.205 junyoung
1288 1.31 cgd if (error)
1289 1.113 fvdl vput(vp);
1290 1.113 fvdl else
1291 1.113 fvdl VOP_UNLOCK(vp, 0);
1292 1.31 cgd return (error);
1293 1.31 cgd }
1294 1.31 cgd
1295 1.31 cgd /*
1296 1.31 cgd * Check permissions, allocate an open file structure,
1297 1.31 cgd * and call the device open routine if any.
1298 1.31 cgd */
1299 1.63 christos int
1300 1.335 dsl sys_open(struct lwp *l, const struct sys_open_args *uap, register_t *retval)
1301 1.56 thorpej {
1302 1.335 dsl /* {
1303 1.74 cgd syscallarg(const char *) path;
1304 1.35 cgd syscallarg(int) flags;
1305 1.35 cgd syscallarg(int) mode;
1306 1.335 dsl } */
1307 1.179 thorpej struct proc *p = l->l_proc;
1308 1.134 thorpej struct cwdinfo *cwdi = p->p_cwdi;
1309 1.346 ad file_t *fp;
1310 1.135 thorpej struct vnode *vp;
1311 1.31 cgd int flags, cmode;
1312 1.31 cgd int type, indx, error;
1313 1.31 cgd struct flock lf;
1314 1.31 cgd struct nameidata nd;
1315 1.31 cgd
1316 1.104 mycroft flags = FFLAGS(SCARG(uap, flags));
1317 1.104 mycroft if ((flags & (FREAD | FWRITE)) == 0)
1318 1.104 mycroft return (EINVAL);
1319 1.346 ad if ((error = fd_allocfile(&fp, &indx)) != 0)
1320 1.31 cgd return (error);
1321 1.328 ad /* We're going to read cwdi->cwdi_cmask unlocked here. */
1322 1.134 thorpej cmode = ((SCARG(uap, mode) &~ cwdi->cwdi_cmask) & ALLPERMS) &~ S_ISTXT;
1323 1.331 pooka NDINIT(&nd, LOOKUP, FOLLOW | TRYEMULROOT, UIO_USERSPACE,
1324 1.334 pooka SCARG(uap, path));
1325 1.194 jdolecek l->l_dupfd = -indx - 1; /* XXX check for fdopen */
1326 1.63 christos if ((error = vn_open(&nd, flags, cmode)) != 0) {
1327 1.346 ad fd_abort(p, fp, indx);
1328 1.213 christos if ((error == EDUPFD || error == EMOVEFD) &&
1329 1.194 jdolecek l->l_dupfd >= 0 && /* XXX from fdopen */
1330 1.45 mycroft (error =
1331 1.346 ad fd_dupopen(l->l_dupfd, &indx, flags, error)) == 0) {
1332 1.45 mycroft *retval = indx;
1333 1.45 mycroft return (0);
1334 1.45 mycroft }
1335 1.45 mycroft if (error == ERESTART)
1336 1.44 mycroft error = EINTR;
1337 1.31 cgd return (error);
1338 1.31 cgd }
1339 1.331 pooka
1340 1.194 jdolecek l->l_dupfd = 0;
1341 1.31 cgd vp = nd.ni_vp;
1342 1.31 cgd fp->f_flag = flags & FMASK;
1343 1.31 cgd fp->f_type = DTYPE_VNODE;
1344 1.31 cgd fp->f_ops = &vnops;
1345 1.184 dsl fp->f_data = vp;
1346 1.31 cgd if (flags & (O_EXLOCK | O_SHLOCK)) {
1347 1.31 cgd lf.l_whence = SEEK_SET;
1348 1.31 cgd lf.l_start = 0;
1349 1.31 cgd lf.l_len = 0;
1350 1.31 cgd if (flags & O_EXLOCK)
1351 1.31 cgd lf.l_type = F_WRLCK;
1352 1.31 cgd else
1353 1.31 cgd lf.l_type = F_RDLCK;
1354 1.31 cgd type = F_FLOCK;
1355 1.31 cgd if ((flags & FNONBLOCK) == 0)
1356 1.31 cgd type |= F_WAIT;
1357 1.113 fvdl VOP_UNLOCK(vp, 0);
1358 1.184 dsl error = VOP_ADVLOCK(vp, fp, F_SETLK, &lf, type);
1359 1.63 christos if (error) {
1360 1.346 ad (void) vn_close(vp, fp->f_flag, fp->f_cred);
1361 1.346 ad fd_abort(p, fp, indx);
1362 1.31 cgd return (error);
1363 1.31 cgd }
1364 1.113 fvdl vn_lock(vp, LK_EXCLUSIVE | LK_RETRY);
1365 1.346 ad atomic_or_uint(&fp->f_flag, FHASLOCK);
1366 1.31 cgd }
1367 1.113 fvdl VOP_UNLOCK(vp, 0);
1368 1.31 cgd *retval = indx;
1369 1.346 ad fd_affix(p, fp, indx);
1370 1.31 cgd return (0);
1371 1.137 wrstuden }
1372 1.137 wrstuden
1373 1.249 yamt static void
1374 1.249 yamt vfs__fhfree(fhandle_t *fhp)
1375 1.249 yamt {
1376 1.249 yamt size_t fhsize;
1377 1.249 yamt
1378 1.249 yamt if (fhp == NULL) {
1379 1.249 yamt return;
1380 1.249 yamt }
1381 1.249 yamt fhsize = FHANDLE_SIZE(fhp);
1382 1.249 yamt kmem_free(fhp, fhsize);
1383 1.249 yamt }
1384 1.249 yamt
1385 1.137 wrstuden /*
1386 1.243 yamt * vfs_composefh: compose a filehandle.
1387 1.243 yamt */
1388 1.243 yamt
1389 1.243 yamt int
1390 1.244 martin vfs_composefh(struct vnode *vp, fhandle_t *fhp, size_t *fh_size)
1391 1.243 yamt {
1392 1.243 yamt struct mount *mp;
1393 1.250 yamt struct fid *fidp;
1394 1.243 yamt int error;
1395 1.250 yamt size_t needfhsize;
1396 1.250 yamt size_t fidsize;
1397 1.243 yamt
1398 1.243 yamt mp = vp->v_mount;
1399 1.250 yamt fidp = NULL;
1400 1.252 martin if (*fh_size < FHANDLE_SIZE_MIN) {
1401 1.250 yamt fidsize = 0;
1402 1.244 martin } else {
1403 1.250 yamt fidsize = *fh_size - offsetof(fhandle_t, fh_fid);
1404 1.250 yamt if (fhp != NULL) {
1405 1.250 yamt memset(fhp, 0, *fh_size);
1406 1.250 yamt fhp->fh_fsid = mp->mnt_stat.f_fsidx;
1407 1.250 yamt fidp = &fhp->fh_fid;
1408 1.250 yamt }
1409 1.244 martin }
1410 1.250 yamt error = VFS_VPTOFH(vp, fidp, &fidsize);
1411 1.250 yamt needfhsize = FHANDLE_SIZE_FROM_FILEID_SIZE(fidsize);
1412 1.250 yamt if (error == 0 && *fh_size < needfhsize) {
1413 1.250 yamt error = E2BIG;
1414 1.250 yamt }
1415 1.250 yamt *fh_size = needfhsize;
1416 1.243 yamt return error;
1417 1.243 yamt }
1418 1.243 yamt
1419 1.249 yamt int
1420 1.249 yamt vfs_composefh_alloc(struct vnode *vp, fhandle_t **fhpp)
1421 1.249 yamt {
1422 1.249 yamt struct mount *mp;
1423 1.249 yamt fhandle_t *fhp;
1424 1.249 yamt size_t fhsize;
1425 1.249 yamt size_t fidsize;
1426 1.249 yamt int error;
1427 1.249 yamt
1428 1.249 yamt *fhpp = NULL;
1429 1.249 yamt mp = vp->v_mount;
1430 1.255 christos fidsize = 0;
1431 1.249 yamt error = VFS_VPTOFH(vp, NULL, &fidsize);
1432 1.249 yamt KASSERT(error != 0);
1433 1.249 yamt if (error != E2BIG) {
1434 1.249 yamt goto out;
1435 1.249 yamt }
1436 1.250 yamt fhsize = FHANDLE_SIZE_FROM_FILEID_SIZE(fidsize);
1437 1.249 yamt fhp = kmem_zalloc(fhsize, KM_SLEEP);
1438 1.249 yamt if (fhp == NULL) {
1439 1.249 yamt error = ENOMEM;
1440 1.249 yamt goto out;
1441 1.249 yamt }
1442 1.249 yamt fhp->fh_fsid = mp->mnt_stat.f_fsidx;
1443 1.249 yamt error = VFS_VPTOFH(vp, &fhp->fh_fid, &fidsize);
1444 1.249 yamt if (error == 0) {
1445 1.249 yamt KASSERT((FHANDLE_SIZE(fhp) == fhsize &&
1446 1.249 yamt FHANDLE_FILEID(fhp)->fid_len == fidsize));
1447 1.249 yamt *fhpp = fhp;
1448 1.249 yamt } else {
1449 1.249 yamt kmem_free(fhp, fhsize);
1450 1.249 yamt }
1451 1.249 yamt out:
1452 1.249 yamt return error;
1453 1.249 yamt }
1454 1.249 yamt
1455 1.249 yamt void
1456 1.249 yamt vfs_composefh_free(fhandle_t *fhp)
1457 1.249 yamt {
1458 1.249 yamt
1459 1.249 yamt vfs__fhfree(fhp);
1460 1.249 yamt }
1461 1.249 yamt
1462 1.243 yamt /*
1463 1.248 yamt * vfs_fhtovp: lookup a vnode by a filehandle.
1464 1.248 yamt */
1465 1.248 yamt
1466 1.248 yamt int
1467 1.248 yamt vfs_fhtovp(fhandle_t *fhp, struct vnode **vpp)
1468 1.248 yamt {
1469 1.248 yamt struct mount *mp;
1470 1.248 yamt int error;
1471 1.248 yamt
1472 1.248 yamt *vpp = NULL;
1473 1.248 yamt mp = vfs_getvfs(FHANDLE_FSID(fhp));
1474 1.248 yamt if (mp == NULL) {
1475 1.248 yamt error = ESTALE;
1476 1.248 yamt goto out;
1477 1.248 yamt }
1478 1.248 yamt if (mp->mnt_op->vfs_fhtovp == NULL) {
1479 1.248 yamt error = EOPNOTSUPP;
1480 1.248 yamt goto out;
1481 1.248 yamt }
1482 1.248 yamt error = VFS_FHTOVP(mp, FHANDLE_FILEID(fhp), vpp);
1483 1.248 yamt out:
1484 1.248 yamt return error;
1485 1.248 yamt }
1486 1.248 yamt
1487 1.248 yamt /*
1488 1.265 yamt * vfs_copyinfh_alloc: allocate and copyin a filehandle, given
1489 1.263 martin * the needed size.
1490 1.263 martin */
1491 1.263 martin
1492 1.263 martin int
1493 1.265 yamt vfs_copyinfh_alloc(const void *ufhp, size_t fhsize, fhandle_t **fhpp)
1494 1.263 martin {
1495 1.263 martin fhandle_t *fhp;
1496 1.263 martin int error;
1497 1.263 martin
1498 1.263 martin *fhpp = NULL;
1499 1.250 yamt if (fhsize > FHANDLE_SIZE_MAX) {
1500 1.250 yamt return EINVAL;
1501 1.250 yamt }
1502 1.265 yamt if (fhsize < FHANDLE_SIZE_MIN) {
1503 1.265 yamt return EINVAL;
1504 1.265 yamt }
1505 1.267 yamt again:
1506 1.248 yamt fhp = kmem_alloc(fhsize, KM_SLEEP);
1507 1.248 yamt if (fhp == NULL) {
1508 1.248 yamt return ENOMEM;
1509 1.248 yamt }
1510 1.248 yamt error = copyin(ufhp, fhp, fhsize);
1511 1.248 yamt if (error == 0) {
1512 1.265 yamt /* XXX this check shouldn't be here */
1513 1.265 yamt if (FHANDLE_SIZE(fhp) == fhsize) {
1514 1.263 martin *fhpp = fhp;
1515 1.263 martin return 0;
1516 1.267 yamt } else if (fhsize == NFSX_V2FH && FHANDLE_SIZE(fhp) < fhsize) {
1517 1.267 yamt /*
1518 1.267 yamt * a kludge for nfsv2 padded handles.
1519 1.267 yamt */
1520 1.267 yamt size_t sz;
1521 1.267 yamt
1522 1.267 yamt sz = FHANDLE_SIZE(fhp);
1523 1.267 yamt kmem_free(fhp, fhsize);
1524 1.267 yamt fhsize = sz;
1525 1.267 yamt goto again;
1526 1.264 yamt } else {
1527 1.265 yamt /*
1528 1.265 yamt * userland told us wrong size.
1529 1.265 yamt */
1530 1.263 martin error = EINVAL;
1531 1.264 yamt }
1532 1.248 yamt }
1533 1.263 martin kmem_free(fhp, fhsize);
1534 1.248 yamt return error;
1535 1.248 yamt }
1536 1.248 yamt
1537 1.248 yamt void
1538 1.248 yamt vfs_copyinfh_free(fhandle_t *fhp)
1539 1.248 yamt {
1540 1.248 yamt
1541 1.249 yamt vfs__fhfree(fhp);
1542 1.248 yamt }
1543 1.248 yamt
1544 1.248 yamt /*
1545 1.137 wrstuden * Get file handle system call
1546 1.137 wrstuden */
1547 1.137 wrstuden int
1548 1.335 dsl sys___getfh30(struct lwp *l, const struct sys___getfh30_args *uap, register_t *retval)
1549 1.137 wrstuden {
1550 1.335 dsl /* {
1551 1.137 wrstuden syscallarg(char *) fname;
1552 1.137 wrstuden syscallarg(fhandle_t *) fhp;
1553 1.244 martin syscallarg(size_t *) fh_size;
1554 1.335 dsl } */
1555 1.155 augustss struct vnode *vp;
1556 1.244 martin fhandle_t *fh;
1557 1.137 wrstuden int error;
1558 1.137 wrstuden struct nameidata nd;
1559 1.244 martin size_t sz;
1560 1.249 yamt size_t usz;
1561 1.137 wrstuden
1562 1.137 wrstuden /*
1563 1.137 wrstuden * Must be super user
1564 1.137 wrstuden */
1565 1.268 elad error = kauth_authorize_system(l->l_cred, KAUTH_SYSTEM_FILEHANDLE,
1566 1.268 elad 0, NULL, NULL, NULL);
1567 1.137 wrstuden if (error)
1568 1.137 wrstuden return (error);
1569 1.310 dsl NDINIT(&nd, LOOKUP, FOLLOW | LOCKLEAF | TRYEMULROOT, UIO_USERSPACE,
1570 1.334 pooka SCARG(uap, fname));
1571 1.137 wrstuden error = namei(&nd);
1572 1.137 wrstuden if (error)
1573 1.137 wrstuden return (error);
1574 1.137 wrstuden vp = nd.ni_vp;
1575 1.249 yamt error = vfs_composefh_alloc(vp, &fh);
1576 1.247 yamt vput(vp);
1577 1.249 yamt if (error != 0) {
1578 1.249 yamt goto out;
1579 1.249 yamt }
1580 1.249 yamt error = copyin(SCARG(uap, fh_size), &usz, sizeof(size_t));
1581 1.249 yamt if (error != 0) {
1582 1.249 yamt goto out;
1583 1.249 yamt }
1584 1.249 yamt sz = FHANDLE_SIZE(fh);
1585 1.249 yamt error = copyout(&sz, SCARG(uap, fh_size), sizeof(size_t));
1586 1.249 yamt if (error != 0) {
1587 1.249 yamt goto out;
1588 1.244 martin }
1589 1.249 yamt if (usz >= sz) {
1590 1.249 yamt error = copyout(fh, SCARG(uap, fhp), sz);
1591 1.249 yamt } else {
1592 1.249 yamt error = E2BIG;
1593 1.244 martin }
1594 1.249 yamt out:
1595 1.249 yamt vfs_composefh_free(fh);
1596 1.137 wrstuden return (error);
1597 1.137 wrstuden }
1598 1.137 wrstuden
1599 1.137 wrstuden /*
1600 1.137 wrstuden * Open a file given a file handle.
1601 1.137 wrstuden *
1602 1.137 wrstuden * Check permissions, allocate an open file structure,
1603 1.137 wrstuden * and call the device open routine if any.
1604 1.137 wrstuden */
1605 1.265 yamt
1606 1.137 wrstuden int
1607 1.265 yamt dofhopen(struct lwp *l, const void *ufhp, size_t fhsize, int oflags,
1608 1.265 yamt register_t *retval)
1609 1.137 wrstuden {
1610 1.346 ad file_t *fp;
1611 1.139 wrstuden struct vnode *vp = NULL;
1612 1.257 ad kauth_cred_t cred = l->l_cred;
1613 1.346 ad file_t *nfp;
1614 1.137 wrstuden int type, indx, error=0;
1615 1.137 wrstuden struct flock lf;
1616 1.137 wrstuden struct vattr va;
1617 1.248 yamt fhandle_t *fh;
1618 1.265 yamt int flags;
1619 1.346 ad proc_t *p;
1620 1.346 ad
1621 1.346 ad p = curproc;
1622 1.137 wrstuden
1623 1.137 wrstuden /*
1624 1.137 wrstuden * Must be super user
1625 1.137 wrstuden */
1626 1.269 elad if ((error = kauth_authorize_system(l->l_cred, KAUTH_SYSTEM_FILEHANDLE,
1627 1.270 elad 0, NULL, NULL, NULL)))
1628 1.137 wrstuden return (error);
1629 1.137 wrstuden
1630 1.265 yamt flags = FFLAGS(oflags);
1631 1.137 wrstuden if ((flags & (FREAD | FWRITE)) == 0)
1632 1.137 wrstuden return (EINVAL);
1633 1.137 wrstuden if ((flags & O_CREAT))
1634 1.137 wrstuden return (EINVAL);
1635 1.346 ad if ((error = fd_allocfile(&nfp, &indx)) != 0)
1636 1.137 wrstuden return (error);
1637 1.137 wrstuden fp = nfp;
1638 1.265 yamt error = vfs_copyinfh_alloc(ufhp, fhsize, &fh);
1639 1.248 yamt if (error != 0) {
1640 1.139 wrstuden goto bad;
1641 1.139 wrstuden }
1642 1.248 yamt error = vfs_fhtovp(fh, &vp);
1643 1.248 yamt if (error != 0) {
1644 1.139 wrstuden goto bad;
1645 1.139 wrstuden }
1646 1.137 wrstuden
1647 1.137 wrstuden /* Now do an effective vn_open */
1648 1.137 wrstuden
1649 1.137 wrstuden if (vp->v_type == VSOCK) {
1650 1.137 wrstuden error = EOPNOTSUPP;
1651 1.137 wrstuden goto bad;
1652 1.137 wrstuden }
1653 1.333 yamt error = vn_openchk(vp, cred, flags);
1654 1.333 yamt if (error != 0)
1655 1.333 yamt goto bad;
1656 1.137 wrstuden if (flags & O_TRUNC) {
1657 1.137 wrstuden VOP_UNLOCK(vp, 0); /* XXX */
1658 1.137 wrstuden vn_lock(vp, LK_EXCLUSIVE | LK_RETRY); /* XXX */
1659 1.137 wrstuden VATTR_NULL(&va);
1660 1.137 wrstuden va.va_size = 0;
1661 1.332 pooka error = VOP_SETATTR(vp, &va, cred);
1662 1.197 hannken if (error)
1663 1.137 wrstuden goto bad;
1664 1.137 wrstuden }
1665 1.332 pooka if ((error = VOP_OPEN(vp, flags, cred)) != 0)
1666 1.137 wrstuden goto bad;
1667 1.346 ad if (flags & FWRITE) {
1668 1.346 ad mutex_enter(&vp->v_interlock);
1669 1.137 wrstuden vp->v_writecount++;
1670 1.346 ad mutex_exit(&vp->v_interlock);
1671 1.346 ad }
1672 1.137 wrstuden
1673 1.137 wrstuden /* done with modified vn_open, now finish what sys_open does. */
1674 1.137 wrstuden
1675 1.137 wrstuden fp->f_flag = flags & FMASK;
1676 1.137 wrstuden fp->f_type = DTYPE_VNODE;
1677 1.137 wrstuden fp->f_ops = &vnops;
1678 1.184 dsl fp->f_data = vp;
1679 1.137 wrstuden if (flags & (O_EXLOCK | O_SHLOCK)) {
1680 1.137 wrstuden lf.l_whence = SEEK_SET;
1681 1.137 wrstuden lf.l_start = 0;
1682 1.137 wrstuden lf.l_len = 0;
1683 1.137 wrstuden if (flags & O_EXLOCK)
1684 1.137 wrstuden lf.l_type = F_WRLCK;
1685 1.137 wrstuden else
1686 1.137 wrstuden lf.l_type = F_RDLCK;
1687 1.137 wrstuden type = F_FLOCK;
1688 1.137 wrstuden if ((flags & FNONBLOCK) == 0)
1689 1.137 wrstuden type |= F_WAIT;
1690 1.137 wrstuden VOP_UNLOCK(vp, 0);
1691 1.184 dsl error = VOP_ADVLOCK(vp, fp, F_SETLK, &lf, type);
1692 1.137 wrstuden if (error) {
1693 1.346 ad (void) vn_close(vp, fp->f_flag, fp->f_cred);
1694 1.346 ad fd_abort(p, fp, indx);
1695 1.137 wrstuden return (error);
1696 1.137 wrstuden }
1697 1.137 wrstuden vn_lock(vp, LK_EXCLUSIVE | LK_RETRY);
1698 1.346 ad atomic_or_uint(&fp->f_flag, FHASLOCK);
1699 1.137 wrstuden }
1700 1.137 wrstuden VOP_UNLOCK(vp, 0);
1701 1.137 wrstuden *retval = indx;
1702 1.346 ad fd_affix(p, fp, indx);
1703 1.248 yamt vfs_copyinfh_free(fh);
1704 1.137 wrstuden return (0);
1705 1.139 wrstuden
1706 1.137 wrstuden bad:
1707 1.346 ad fd_abort(p, fp, indx);
1708 1.139 wrstuden if (vp != NULL)
1709 1.139 wrstuden vput(vp);
1710 1.248 yamt vfs_copyinfh_free(fh);
1711 1.137 wrstuden return (error);
1712 1.137 wrstuden }
1713 1.137 wrstuden
1714 1.137 wrstuden int
1715 1.335 dsl sys___fhopen40(struct lwp *l, const struct sys___fhopen40_args *uap, register_t *retval)
1716 1.137 wrstuden {
1717 1.335 dsl /* {
1718 1.263 martin syscallarg(const void *) fhp;
1719 1.263 martin syscallarg(size_t) fh_size;
1720 1.265 yamt syscallarg(int) flags;
1721 1.335 dsl } */
1722 1.265 yamt
1723 1.265 yamt return dofhopen(l, SCARG(uap, fhp), SCARG(uap, fh_size),
1724 1.265 yamt SCARG(uap, flags), retval);
1725 1.265 yamt }
1726 1.265 yamt
1727 1.306 dsl int
1728 1.306 dsl do_fhstat(struct lwp *l, const void *ufhp, size_t fhsize, struct stat *sb)
1729 1.306 dsl {
1730 1.137 wrstuden int error;
1731 1.248 yamt fhandle_t *fh;
1732 1.137 wrstuden struct vnode *vp;
1733 1.137 wrstuden
1734 1.137 wrstuden /*
1735 1.137 wrstuden * Must be super user
1736 1.137 wrstuden */
1737 1.268 elad if ((error = kauth_authorize_system(l->l_cred, KAUTH_SYSTEM_FILEHANDLE,
1738 1.270 elad 0, NULL, NULL, NULL)))
1739 1.137 wrstuden return (error);
1740 1.137 wrstuden
1741 1.265 yamt error = vfs_copyinfh_alloc(ufhp, fhsize, &fh);
1742 1.306 dsl if (error != 0)
1743 1.306 dsl return error;
1744 1.306 dsl
1745 1.248 yamt error = vfs_fhtovp(fh, &vp);
1746 1.306 dsl vfs_copyinfh_free(fh);
1747 1.306 dsl if (error != 0)
1748 1.306 dsl return error;
1749 1.306 dsl
1750 1.346 ad error = vn_stat(vp, sb);
1751 1.137 wrstuden vput(vp);
1752 1.248 yamt return error;
1753 1.137 wrstuden }
1754 1.137 wrstuden
1755 1.265 yamt
1756 1.137 wrstuden /* ARGSUSED */
1757 1.137 wrstuden int
1758 1.383 christos sys___fhstat50(struct lwp *l, const struct sys___fhstat50_args *uap, register_t *retval)
1759 1.137 wrstuden {
1760 1.335 dsl /* {
1761 1.265 yamt syscallarg(const void *) fhp;
1762 1.263 martin syscallarg(size_t) fh_size;
1763 1.265 yamt syscallarg(struct stat *) sb;
1764 1.335 dsl } */
1765 1.306 dsl struct stat sb;
1766 1.306 dsl int error;
1767 1.265 yamt
1768 1.306 dsl error = do_fhstat(l, SCARG(uap, fhp), SCARG(uap, fh_size), &sb);
1769 1.306 dsl if (error)
1770 1.306 dsl return error;
1771 1.306 dsl return copyout(&sb, SCARG(uap, sb), sizeof(sb));
1772 1.265 yamt }
1773 1.265 yamt
1774 1.306 dsl int
1775 1.306 dsl do_fhstatvfs(struct lwp *l, const void *ufhp, size_t fhsize, struct statvfs *sb,
1776 1.306 dsl int flags)
1777 1.306 dsl {
1778 1.248 yamt fhandle_t *fh;
1779 1.137 wrstuden struct mount *mp;
1780 1.137 wrstuden struct vnode *vp;
1781 1.137 wrstuden int error;
1782 1.137 wrstuden
1783 1.137 wrstuden /*
1784 1.137 wrstuden * Must be super user
1785 1.137 wrstuden */
1786 1.268 elad if ((error = kauth_authorize_system(l->l_cred, KAUTH_SYSTEM_FILEHANDLE,
1787 1.270 elad 0, NULL, NULL, NULL)))
1788 1.206 christos return error;
1789 1.137 wrstuden
1790 1.265 yamt error = vfs_copyinfh_alloc(ufhp, fhsize, &fh);
1791 1.306 dsl if (error != 0)
1792 1.306 dsl return error;
1793 1.306 dsl
1794 1.248 yamt error = vfs_fhtovp(fh, &vp);
1795 1.306 dsl vfs_copyinfh_free(fh);
1796 1.306 dsl if (error != 0)
1797 1.306 dsl return error;
1798 1.306 dsl
1799 1.137 wrstuden mp = vp->v_mount;
1800 1.306 dsl error = dostatvfs(mp, sb, l, flags, 1);
1801 1.137 wrstuden vput(vp);
1802 1.241 yamt return error;
1803 1.31 cgd }
1804 1.31 cgd
1805 1.265 yamt /* ARGSUSED */
1806 1.265 yamt int
1807 1.335 dsl sys___fhstatvfs140(struct lwp *l, const struct sys___fhstatvfs140_args *uap, register_t *retval)
1808 1.265 yamt {
1809 1.335 dsl /* {
1810 1.266 yamt syscallarg(const void *) fhp;
1811 1.265 yamt syscallarg(size_t) fh_size;
1812 1.265 yamt syscallarg(struct statvfs *) buf;
1813 1.265 yamt syscallarg(int) flags;
1814 1.335 dsl } */
1815 1.306 dsl struct statvfs *sb = STATVFSBUF_GET();
1816 1.306 dsl int error;
1817 1.265 yamt
1818 1.306 dsl error = do_fhstatvfs(l, SCARG(uap, fhp), SCARG(uap, fh_size), sb,
1819 1.306 dsl SCARG(uap, flags));
1820 1.306 dsl if (error == 0)
1821 1.306 dsl error = copyout(sb, SCARG(uap, buf), sizeof(*sb));
1822 1.306 dsl STATVFSBUF_PUT(sb);
1823 1.306 dsl return error;
1824 1.265 yamt }
1825 1.265 yamt
1826 1.31 cgd /*
1827 1.31 cgd * Create a special file.
1828 1.31 cgd */
1829 1.31 cgd /* ARGSUSED */
1830 1.63 christos int
1831 1.383 christos sys___mknod50(struct lwp *l, const struct sys___mknod50_args *uap,
1832 1.383 christos register_t *retval)
1833 1.56 thorpej {
1834 1.335 dsl /* {
1835 1.74 cgd syscallarg(const char *) path;
1836 1.383 christos syscallarg(mode_t) mode;
1837 1.383 christos syscallarg(dev_t) dev;
1838 1.335 dsl } */
1839 1.383 christos return do_sys_mknod(l, SCARG(uap, path), SCARG(uap, mode),
1840 1.383 christos SCARG(uap, dev), retval);
1841 1.383 christos }
1842 1.383 christos
1843 1.383 christos int
1844 1.383 christos do_sys_mknod(struct lwp *l, const char *pathname, mode_t mode, dev_t dev,
1845 1.383 christos register_t *retval)
1846 1.383 christos {
1847 1.179 thorpej struct proc *p = l->l_proc;
1848 1.155 augustss struct vnode *vp;
1849 1.31 cgd struct vattr vattr;
1850 1.301 pooka int error, optype;
1851 1.315 christos struct nameidata nd;
1852 1.314 christos char *path;
1853 1.315 christos const char *cpath;
1854 1.315 christos enum uio_seg seg = UIO_USERSPACE;
1855 1.31 cgd
1856 1.268 elad if ((error = kauth_authorize_system(l->l_cred, KAUTH_SYSTEM_MKNOD,
1857 1.268 elad 0, NULL, NULL, NULL)) != 0)
1858 1.31 cgd return (error);
1859 1.301 pooka
1860 1.301 pooka optype = VOP_MKNOD_DESCOFFSET;
1861 1.315 christos
1862 1.383 christos VERIEXEC_PATH_GET(pathname, seg, cpath, path);
1863 1.334 pooka NDINIT(&nd, CREATE, LOCKPARENT | TRYEMULROOT, seg, cpath);
1864 1.315 christos
1865 1.63 christos if ((error = namei(&nd)) != 0)
1866 1.314 christos goto out;
1867 1.31 cgd vp = nd.ni_vp;
1868 1.43 mycroft if (vp != NULL)
1869 1.31 cgd error = EEXIST;
1870 1.43 mycroft else {
1871 1.43 mycroft VATTR_NULL(&vattr);
1872 1.328 ad /* We will read cwdi->cwdi_cmask unlocked. */
1873 1.383 christos vattr.va_mode = (mode & ALLPERMS) &~ p->p_cwdi->cwdi_cmask;
1874 1.383 christos vattr.va_rdev = dev;
1875 1.43 mycroft
1876 1.383 christos switch (mode & S_IFMT) {
1877 1.43 mycroft case S_IFMT: /* used by badsect to flag bad sectors */
1878 1.43 mycroft vattr.va_type = VBAD;
1879 1.43 mycroft break;
1880 1.43 mycroft case S_IFCHR:
1881 1.43 mycroft vattr.va_type = VCHR;
1882 1.43 mycroft break;
1883 1.43 mycroft case S_IFBLK:
1884 1.43 mycroft vattr.va_type = VBLK;
1885 1.43 mycroft break;
1886 1.43 mycroft case S_IFWHT:
1887 1.301 pooka optype = VOP_WHITEOUT_DESCOFFSET;
1888 1.301 pooka break;
1889 1.301 pooka case S_IFREG:
1890 1.314 christos #if NVERIEXEC > 0
1891 1.314 christos error = veriexec_openchk(l, nd.ni_vp, nd.ni_dirp,
1892 1.314 christos O_CREAT);
1893 1.314 christos #endif /* NVERIEXEC > 0 */
1894 1.301 pooka vattr.va_type = VREG;
1895 1.302 pooka vattr.va_rdev = VNOVAL;
1896 1.301 pooka optype = VOP_CREATE_DESCOFFSET;
1897 1.43 mycroft break;
1898 1.43 mycroft default:
1899 1.43 mycroft error = EINVAL;
1900 1.43 mycroft break;
1901 1.43 mycroft }
1902 1.31 cgd }
1903 1.43 mycroft if (!error) {
1904 1.301 pooka switch (optype) {
1905 1.301 pooka case VOP_WHITEOUT_DESCOFFSET:
1906 1.43 mycroft error = VOP_WHITEOUT(nd.ni_dvp, &nd.ni_cnd, CREATE);
1907 1.43 mycroft if (error)
1908 1.43 mycroft VOP_ABORTOP(nd.ni_dvp, &nd.ni_cnd);
1909 1.43 mycroft vput(nd.ni_dvp);
1910 1.301 pooka break;
1911 1.301 pooka
1912 1.301 pooka case VOP_MKNOD_DESCOFFSET:
1913 1.43 mycroft error = VOP_MKNOD(nd.ni_dvp, &nd.ni_vp,
1914 1.43 mycroft &nd.ni_cnd, &vattr);
1915 1.168 assar if (error == 0)
1916 1.168 assar vput(nd.ni_vp);
1917 1.301 pooka break;
1918 1.301 pooka
1919 1.301 pooka case VOP_CREATE_DESCOFFSET:
1920 1.301 pooka error = VOP_CREATE(nd.ni_dvp, &nd.ni_vp,
1921 1.301 pooka &nd.ni_cnd, &vattr);
1922 1.301 pooka if (error == 0)
1923 1.301 pooka vput(nd.ni_vp);
1924 1.301 pooka break;
1925 1.43 mycroft }
1926 1.43 mycroft } else {
1927 1.43 mycroft VOP_ABORTOP(nd.ni_dvp, &nd.ni_cnd);
1928 1.43 mycroft if (nd.ni_dvp == vp)
1929 1.43 mycroft vrele(nd.ni_dvp);
1930 1.43 mycroft else
1931 1.43 mycroft vput(nd.ni_dvp);
1932 1.43 mycroft if (vp)
1933 1.43 mycroft vrele(vp);
1934 1.31 cgd }
1935 1.314 christos out:
1936 1.315 christos VERIEXEC_PATH_PUT(path);
1937 1.31 cgd return (error);
1938 1.31 cgd }
1939 1.31 cgd
1940 1.31 cgd /*
1941 1.31 cgd * Create a named pipe.
1942 1.31 cgd */
1943 1.31 cgd /* ARGSUSED */
1944 1.63 christos int
1945 1.335 dsl sys_mkfifo(struct lwp *l, const struct sys_mkfifo_args *uap, register_t *retval)
1946 1.56 thorpej {
1947 1.335 dsl /* {
1948 1.74 cgd syscallarg(const char *) path;
1949 1.35 cgd syscallarg(int) mode;
1950 1.335 dsl } */
1951 1.179 thorpej struct proc *p = l->l_proc;
1952 1.31 cgd struct vattr vattr;
1953 1.31 cgd int error;
1954 1.31 cgd struct nameidata nd;
1955 1.31 cgd
1956 1.334 pooka NDINIT(&nd, CREATE, LOCKPARENT | TRYEMULROOT, UIO_USERSPACE,
1957 1.334 pooka SCARG(uap, path));
1958 1.63 christos if ((error = namei(&nd)) != 0)
1959 1.31 cgd return (error);
1960 1.31 cgd if (nd.ni_vp != NULL) {
1961 1.31 cgd VOP_ABORTOP(nd.ni_dvp, &nd.ni_cnd);
1962 1.31 cgd if (nd.ni_dvp == nd.ni_vp)
1963 1.31 cgd vrele(nd.ni_dvp);
1964 1.31 cgd else
1965 1.31 cgd vput(nd.ni_dvp);
1966 1.31 cgd vrele(nd.ni_vp);
1967 1.31 cgd return (EEXIST);
1968 1.31 cgd }
1969 1.31 cgd VATTR_NULL(&vattr);
1970 1.31 cgd vattr.va_type = VFIFO;
1971 1.328 ad /* We will read cwdi->cwdi_cmask unlocked. */
1972 1.134 thorpej vattr.va_mode = (SCARG(uap, mode) & ALLPERMS) &~ p->p_cwdi->cwdi_cmask;
1973 1.168 assar error = VOP_MKNOD(nd.ni_dvp, &nd.ni_vp, &nd.ni_cnd, &vattr);
1974 1.168 assar if (error == 0)
1975 1.168 assar vput(nd.ni_vp);
1976 1.168 assar return (error);
1977 1.31 cgd }
1978 1.31 cgd
1979 1.31 cgd /*
1980 1.31 cgd * Make a hard file link.
1981 1.31 cgd */
1982 1.31 cgd /* ARGSUSED */
1983 1.63 christos int
1984 1.335 dsl sys_link(struct lwp *l, const struct sys_link_args *uap, register_t *retval)
1985 1.56 thorpej {
1986 1.335 dsl /* {
1987 1.74 cgd syscallarg(const char *) path;
1988 1.74 cgd syscallarg(const char *) link;
1989 1.335 dsl } */
1990 1.155 augustss struct vnode *vp;
1991 1.31 cgd struct nameidata nd;
1992 1.31 cgd int error;
1993 1.31 cgd
1994 1.331 pooka NDINIT(&nd, LOOKUP, FOLLOW | TRYEMULROOT, UIO_USERSPACE,
1995 1.334 pooka SCARG(uap, path));
1996 1.63 christos if ((error = namei(&nd)) != 0)
1997 1.31 cgd return (error);
1998 1.31 cgd vp = nd.ni_vp;
1999 1.331 pooka NDINIT(&nd, CREATE, LOCKPARENT | TRYEMULROOT, UIO_USERSPACE,
2000 1.334 pooka SCARG(uap, link));
2001 1.66 mycroft if ((error = namei(&nd)) != 0)
2002 1.66 mycroft goto out;
2003 1.66 mycroft if (nd.ni_vp) {
2004 1.66 mycroft VOP_ABORTOP(nd.ni_dvp, &nd.ni_cnd);
2005 1.66 mycroft if (nd.ni_dvp == nd.ni_vp)
2006 1.66 mycroft vrele(nd.ni_dvp);
2007 1.66 mycroft else
2008 1.66 mycroft vput(nd.ni_dvp);
2009 1.66 mycroft vrele(nd.ni_vp);
2010 1.66 mycroft error = EEXIST;
2011 1.66 mycroft goto out;
2012 1.31 cgd }
2013 1.66 mycroft error = VOP_LINK(nd.ni_dvp, vp, &nd.ni_cnd);
2014 1.66 mycroft out:
2015 1.31 cgd vrele(vp);
2016 1.31 cgd return (error);
2017 1.31 cgd }
2018 1.31 cgd
2019 1.31 cgd /*
2020 1.31 cgd * Make a symbolic link.
2021 1.31 cgd */
2022 1.31 cgd /* ARGSUSED */
2023 1.63 christos int
2024 1.335 dsl sys_symlink(struct lwp *l, const struct sys_symlink_args *uap, register_t *retval)
2025 1.56 thorpej {
2026 1.335 dsl /* {
2027 1.74 cgd syscallarg(const char *) path;
2028 1.74 cgd syscallarg(const char *) link;
2029 1.335 dsl } */
2030 1.179 thorpej struct proc *p = l->l_proc;
2031 1.31 cgd struct vattr vattr;
2032 1.31 cgd char *path;
2033 1.31 cgd int error;
2034 1.31 cgd struct nameidata nd;
2035 1.31 cgd
2036 1.161 thorpej path = PNBUF_GET();
2037 1.63 christos error = copyinstr(SCARG(uap, path), path, MAXPATHLEN, NULL);
2038 1.63 christos if (error)
2039 1.43 mycroft goto out;
2040 1.331 pooka NDINIT(&nd, CREATE, LOCKPARENT | TRYEMULROOT, UIO_USERSPACE,
2041 1.334 pooka SCARG(uap, link));
2042 1.63 christos if ((error = namei(&nd)) != 0)
2043 1.43 mycroft goto out;
2044 1.31 cgd if (nd.ni_vp) {
2045 1.31 cgd VOP_ABORTOP(nd.ni_dvp, &nd.ni_cnd);
2046 1.31 cgd if (nd.ni_dvp == nd.ni_vp)
2047 1.31 cgd vrele(nd.ni_dvp);
2048 1.31 cgd else
2049 1.31 cgd vput(nd.ni_dvp);
2050 1.31 cgd vrele(nd.ni_vp);
2051 1.31 cgd error = EEXIST;
2052 1.43 mycroft goto out;
2053 1.31 cgd }
2054 1.31 cgd VATTR_NULL(&vattr);
2055 1.230 jmmv vattr.va_type = VLNK;
2056 1.328 ad /* We will read cwdi->cwdi_cmask unlocked. */
2057 1.134 thorpej vattr.va_mode = ACCESSPERMS &~ p->p_cwdi->cwdi_cmask;
2058 1.31 cgd error = VOP_SYMLINK(nd.ni_dvp, &nd.ni_vp, &nd.ni_cnd, &vattr, path);
2059 1.168 assar if (error == 0)
2060 1.168 assar vput(nd.ni_vp);
2061 1.43 mycroft out:
2062 1.161 thorpej PNBUF_PUT(path);
2063 1.31 cgd return (error);
2064 1.31 cgd }
2065 1.31 cgd
2066 1.31 cgd /*
2067 1.43 mycroft * Delete a whiteout from the filesystem.
2068 1.43 mycroft */
2069 1.43 mycroft /* ARGSUSED */
2070 1.63 christos int
2071 1.335 dsl sys_undelete(struct lwp *l, const struct sys_undelete_args *uap, register_t *retval)
2072 1.56 thorpej {
2073 1.335 dsl /* {
2074 1.74 cgd syscallarg(const char *) path;
2075 1.335 dsl } */
2076 1.43 mycroft int error;
2077 1.43 mycroft struct nameidata nd;
2078 1.43 mycroft
2079 1.331 pooka NDINIT(&nd, DELETE, LOCKPARENT | DOWHITEOUT | TRYEMULROOT,
2080 1.334 pooka UIO_USERSPACE, SCARG(uap, path));
2081 1.43 mycroft error = namei(&nd);
2082 1.43 mycroft if (error)
2083 1.43 mycroft return (error);
2084 1.43 mycroft
2085 1.43 mycroft if (nd.ni_vp != NULLVP || !(nd.ni_cnd.cn_flags & ISWHITEOUT)) {
2086 1.43 mycroft VOP_ABORTOP(nd.ni_dvp, &nd.ni_cnd);
2087 1.43 mycroft if (nd.ni_dvp == nd.ni_vp)
2088 1.43 mycroft vrele(nd.ni_dvp);
2089 1.43 mycroft else
2090 1.43 mycroft vput(nd.ni_dvp);
2091 1.43 mycroft if (nd.ni_vp)
2092 1.43 mycroft vrele(nd.ni_vp);
2093 1.43 mycroft return (EEXIST);
2094 1.43 mycroft }
2095 1.63 christos if ((error = VOP_WHITEOUT(nd.ni_dvp, &nd.ni_cnd, DELETE)) != 0)
2096 1.43 mycroft VOP_ABORTOP(nd.ni_dvp, &nd.ni_cnd);
2097 1.43 mycroft vput(nd.ni_dvp);
2098 1.43 mycroft return (error);
2099 1.43 mycroft }
2100 1.43 mycroft
2101 1.43 mycroft /*
2102 1.31 cgd * Delete a name from the filesystem.
2103 1.31 cgd */
2104 1.31 cgd /* ARGSUSED */
2105 1.63 christos int
2106 1.335 dsl sys_unlink(struct lwp *l, const struct sys_unlink_args *uap, register_t *retval)
2107 1.56 thorpej {
2108 1.335 dsl /* {
2109 1.74 cgd syscallarg(const char *) path;
2110 1.335 dsl } */
2111 1.336 ad
2112 1.336 ad return do_sys_unlink(SCARG(uap, path), UIO_USERSPACE);
2113 1.336 ad }
2114 1.336 ad
2115 1.336 ad int
2116 1.336 ad do_sys_unlink(const char *arg, enum uio_seg seg)
2117 1.336 ad {
2118 1.155 augustss struct vnode *vp;
2119 1.31 cgd int error;
2120 1.31 cgd struct nameidata nd;
2121 1.336 ad kauth_cred_t cred;
2122 1.315 christos char *path;
2123 1.315 christos const char *cpath;
2124 1.31 cgd
2125 1.336 ad VERIEXEC_PATH_GET(arg, seg, cpath, path);
2126 1.334 pooka NDINIT(&nd, DELETE, LOCKPARENT | LOCKLEAF | TRYEMULROOT, seg, cpath);
2127 1.313 elad
2128 1.63 christos if ((error = namei(&nd)) != 0)
2129 1.313 elad goto out;
2130 1.31 cgd vp = nd.ni_vp;
2131 1.31 cgd
2132 1.66 mycroft /*
2133 1.66 mycroft * The root of a mounted filesystem cannot be deleted.
2134 1.66 mycroft */
2135 1.329 ad if (vp->v_vflag & VV_ROOT) {
2136 1.43 mycroft VOP_ABORTOP(nd.ni_dvp, &nd.ni_cnd);
2137 1.43 mycroft if (nd.ni_dvp == vp)
2138 1.43 mycroft vrele(nd.ni_dvp);
2139 1.43 mycroft else
2140 1.43 mycroft vput(nd.ni_dvp);
2141 1.66 mycroft vput(vp);
2142 1.66 mycroft error = EBUSY;
2143 1.66 mycroft goto out;
2144 1.31 cgd }
2145 1.219 blymn
2146 1.256 elad #if NVERIEXEC > 0
2147 1.222 elad /* Handle remove requests for veriexec entries. */
2148 1.336 ad if ((error = veriexec_removechk(curlwp, nd.ni_vp, nd.ni_dirp)) != 0) {
2149 1.219 blymn VOP_ABORTOP(nd.ni_dvp, &nd.ni_cnd);
2150 1.219 blymn if (nd.ni_dvp == vp)
2151 1.219 blymn vrele(nd.ni_dvp);
2152 1.219 blymn else
2153 1.219 blymn vput(nd.ni_dvp);
2154 1.219 blymn vput(vp);
2155 1.219 blymn goto out;
2156 1.219 blymn }
2157 1.256 elad #endif /* NVERIEXEC > 0 */
2158 1.256 elad
2159 1.336 ad cred = kauth_cred_get();
2160 1.253 elad #ifdef FILEASSOC
2161 1.278 elad (void)fileassoc_file_delete(vp);
2162 1.253 elad #endif /* FILEASSOC */
2163 1.66 mycroft error = VOP_REMOVE(nd.ni_dvp, nd.ni_vp, &nd.ni_cnd);
2164 1.66 mycroft out:
2165 1.315 christos VERIEXEC_PATH_PUT(path);
2166 1.31 cgd return (error);
2167 1.31 cgd }
2168 1.31 cgd
2169 1.31 cgd /*
2170 1.31 cgd * Reposition read/write file offset.
2171 1.31 cgd */
2172 1.63 christos int
2173 1.335 dsl sys_lseek(struct lwp *l, const struct sys_lseek_args *uap, register_t *retval)
2174 1.56 thorpej {
2175 1.335 dsl /* {
2176 1.35 cgd syscallarg(int) fd;
2177 1.35 cgd syscallarg(int) pad;
2178 1.35 cgd syscallarg(off_t) offset;
2179 1.35 cgd syscallarg(int) whence;
2180 1.335 dsl } */
2181 1.257 ad kauth_cred_t cred = l->l_cred;
2182 1.346 ad file_t *fp;
2183 1.84 kleink struct vnode *vp;
2184 1.31 cgd struct vattr vattr;
2185 1.155 augustss off_t newoff;
2186 1.346 ad int error, fd;
2187 1.346 ad
2188 1.346 ad fd = SCARG(uap, fd);
2189 1.31 cgd
2190 1.346 ad if ((fp = fd_getfile(fd)) == NULL)
2191 1.31 cgd return (EBADF);
2192 1.84 kleink
2193 1.346 ad vp = fp->f_data;
2194 1.135 thorpej if (fp->f_type != DTYPE_VNODE || vp->v_type == VFIFO) {
2195 1.135 thorpej error = ESPIPE;
2196 1.135 thorpej goto out;
2197 1.135 thorpej }
2198 1.84 kleink
2199 1.35 cgd switch (SCARG(uap, whence)) {
2200 1.92 kleink case SEEK_CUR:
2201 1.84 kleink newoff = fp->f_offset + SCARG(uap, offset);
2202 1.31 cgd break;
2203 1.92 kleink case SEEK_END:
2204 1.332 pooka error = VOP_GETATTR(vp, &vattr, cred);
2205 1.328 ad if (error) {
2206 1.135 thorpej goto out;
2207 1.328 ad }
2208 1.84 kleink newoff = SCARG(uap, offset) + vattr.va_size;
2209 1.31 cgd break;
2210 1.92 kleink case SEEK_SET:
2211 1.84 kleink newoff = SCARG(uap, offset);
2212 1.31 cgd break;
2213 1.31 cgd default:
2214 1.135 thorpej error = EINVAL;
2215 1.135 thorpej goto out;
2216 1.31 cgd }
2217 1.328 ad if ((error = VOP_SEEK(vp, fp->f_offset, newoff, cred)) == 0) {
2218 1.328 ad *(off_t *)retval = fp->f_offset = newoff;
2219 1.328 ad }
2220 1.135 thorpej out:
2221 1.346 ad fd_putfile(fd);
2222 1.135 thorpej return (error);
2223 1.120 thorpej }
2224 1.120 thorpej
2225 1.120 thorpej /*
2226 1.120 thorpej * Positional read system call.
2227 1.120 thorpej */
2228 1.120 thorpej int
2229 1.335 dsl sys_pread(struct lwp *l, const struct sys_pread_args *uap, register_t *retval)
2230 1.120 thorpej {
2231 1.335 dsl /* {
2232 1.120 thorpej syscallarg(int) fd;
2233 1.120 thorpej syscallarg(void *) buf;
2234 1.120 thorpej syscallarg(size_t) nbyte;
2235 1.120 thorpej syscallarg(off_t) offset;
2236 1.335 dsl } */
2237 1.346 ad file_t *fp;
2238 1.120 thorpej struct vnode *vp;
2239 1.120 thorpej off_t offset;
2240 1.120 thorpej int error, fd = SCARG(uap, fd);
2241 1.120 thorpej
2242 1.346 ad if ((fp = fd_getfile(fd)) == NULL)
2243 1.166 thorpej return (EBADF);
2244 1.166 thorpej
2245 1.183 pk if ((fp->f_flag & FREAD) == 0) {
2246 1.346 ad fd_putfile(fd);
2247 1.120 thorpej return (EBADF);
2248 1.183 pk }
2249 1.120 thorpej
2250 1.346 ad vp = fp->f_data;
2251 1.135 thorpej if (fp->f_type != DTYPE_VNODE || vp->v_type == VFIFO) {
2252 1.135 thorpej error = ESPIPE;
2253 1.135 thorpej goto out;
2254 1.135 thorpej }
2255 1.120 thorpej
2256 1.120 thorpej offset = SCARG(uap, offset);
2257 1.120 thorpej
2258 1.120 thorpej /*
2259 1.120 thorpej * XXX This works because no file systems actually
2260 1.120 thorpej * XXX take any action on the seek operation.
2261 1.120 thorpej */
2262 1.120 thorpej if ((error = VOP_SEEK(vp, fp->f_offset, offset, fp->f_cred)) != 0)
2263 1.135 thorpej goto out;
2264 1.120 thorpej
2265 1.135 thorpej /* dofileread() will unuse the descriptor for us */
2266 1.328 ad return (dofileread(fd, fp, SCARG(uap, buf), SCARG(uap, nbyte),
2267 1.120 thorpej &offset, 0, retval));
2268 1.135 thorpej
2269 1.135 thorpej out:
2270 1.346 ad fd_putfile(fd);
2271 1.135 thorpej return (error);
2272 1.120 thorpej }
2273 1.120 thorpej
2274 1.120 thorpej /*
2275 1.120 thorpej * Positional scatter read system call.
2276 1.120 thorpej */
2277 1.120 thorpej int
2278 1.335 dsl sys_preadv(struct lwp *l, const struct sys_preadv_args *uap, register_t *retval)
2279 1.120 thorpej {
2280 1.335 dsl /* {
2281 1.120 thorpej syscallarg(int) fd;
2282 1.120 thorpej syscallarg(const struct iovec *) iovp;
2283 1.120 thorpej syscallarg(int) iovcnt;
2284 1.120 thorpej syscallarg(off_t) offset;
2285 1.335 dsl } */
2286 1.335 dsl off_t offset = SCARG(uap, offset);
2287 1.120 thorpej
2288 1.328 ad return do_filereadv(SCARG(uap, fd), SCARG(uap, iovp),
2289 1.335 dsl SCARG(uap, iovcnt), &offset, 0, retval);
2290 1.120 thorpej }
2291 1.120 thorpej
2292 1.120 thorpej /*
2293 1.120 thorpej * Positional write system call.
2294 1.120 thorpej */
2295 1.120 thorpej int
2296 1.335 dsl sys_pwrite(struct lwp *l, const struct sys_pwrite_args *uap, register_t *retval)
2297 1.120 thorpej {
2298 1.335 dsl /* {
2299 1.120 thorpej syscallarg(int) fd;
2300 1.120 thorpej syscallarg(const void *) buf;
2301 1.120 thorpej syscallarg(size_t) nbyte;
2302 1.120 thorpej syscallarg(off_t) offset;
2303 1.335 dsl } */
2304 1.346 ad file_t *fp;
2305 1.120 thorpej struct vnode *vp;
2306 1.120 thorpej off_t offset;
2307 1.120 thorpej int error, fd = SCARG(uap, fd);
2308 1.120 thorpej
2309 1.346 ad if ((fp = fd_getfile(fd)) == NULL)
2310 1.166 thorpej return (EBADF);
2311 1.166 thorpej
2312 1.183 pk if ((fp->f_flag & FWRITE) == 0) {
2313 1.346 ad fd_putfile(fd);
2314 1.120 thorpej return (EBADF);
2315 1.183 pk }
2316 1.120 thorpej
2317 1.346 ad vp = fp->f_data;
2318 1.135 thorpej if (fp->f_type != DTYPE_VNODE || vp->v_type == VFIFO) {
2319 1.135 thorpej error = ESPIPE;
2320 1.135 thorpej goto out;
2321 1.135 thorpej }
2322 1.120 thorpej
2323 1.120 thorpej offset = SCARG(uap, offset);
2324 1.120 thorpej
2325 1.120 thorpej /*
2326 1.120 thorpej * XXX This works because no file systems actually
2327 1.120 thorpej * XXX take any action on the seek operation.
2328 1.120 thorpej */
2329 1.120 thorpej if ((error = VOP_SEEK(vp, fp->f_offset, offset, fp->f_cred)) != 0)
2330 1.135 thorpej goto out;
2331 1.120 thorpej
2332 1.135 thorpej /* dofilewrite() will unuse the descriptor for us */
2333 1.328 ad return (dofilewrite(fd, fp, SCARG(uap, buf), SCARG(uap, nbyte),
2334 1.120 thorpej &offset, 0, retval));
2335 1.135 thorpej
2336 1.135 thorpej out:
2337 1.346 ad fd_putfile(fd);
2338 1.135 thorpej return (error);
2339 1.120 thorpej }
2340 1.120 thorpej
2341 1.120 thorpej /*
2342 1.120 thorpej * Positional gather write system call.
2343 1.120 thorpej */
2344 1.120 thorpej int
2345 1.335 dsl sys_pwritev(struct lwp *l, const struct sys_pwritev_args *uap, register_t *retval)
2346 1.120 thorpej {
2347 1.335 dsl /* {
2348 1.120 thorpej syscallarg(int) fd;
2349 1.120 thorpej syscallarg(const struct iovec *) iovp;
2350 1.120 thorpej syscallarg(int) iovcnt;
2351 1.120 thorpej syscallarg(off_t) offset;
2352 1.335 dsl } */
2353 1.335 dsl off_t offset = SCARG(uap, offset);
2354 1.120 thorpej
2355 1.328 ad return do_filewritev(SCARG(uap, fd), SCARG(uap, iovp),
2356 1.335 dsl SCARG(uap, iovcnt), &offset, 0, retval);
2357 1.31 cgd }
2358 1.31 cgd
2359 1.31 cgd /*
2360 1.31 cgd * Check access permissions.
2361 1.31 cgd */
2362 1.63 christos int
2363 1.335 dsl sys_access(struct lwp *l, const struct sys_access_args *uap, register_t *retval)
2364 1.56 thorpej {
2365 1.335 dsl /* {
2366 1.74 cgd syscallarg(const char *) path;
2367 1.35 cgd syscallarg(int) flags;
2368 1.335 dsl } */
2369 1.242 elad kauth_cred_t cred;
2370 1.155 augustss struct vnode *vp;
2371 1.169 christos int error, flags;
2372 1.31 cgd struct nameidata nd;
2373 1.31 cgd
2374 1.257 ad cred = kauth_cred_dup(l->l_cred);
2375 1.257 ad kauth_cred_seteuid(cred, kauth_cred_getuid(l->l_cred));
2376 1.257 ad kauth_cred_setegid(cred, kauth_cred_getgid(l->l_cred));
2377 1.310 dsl NDINIT(&nd, LOOKUP, FOLLOW | LOCKLEAF | TRYEMULROOT, UIO_USERSPACE,
2378 1.334 pooka SCARG(uap, path));
2379 1.169 christos /* Override default credentials */
2380 1.169 christos nd.ni_cnd.cn_cred = cred;
2381 1.63 christos if ((error = namei(&nd)) != 0)
2382 1.169 christos goto out;
2383 1.31 cgd vp = nd.ni_vp;
2384 1.31 cgd
2385 1.31 cgd /* Flags == 0 means only check for existence. */
2386 1.35 cgd if (SCARG(uap, flags)) {
2387 1.31 cgd flags = 0;
2388 1.35 cgd if (SCARG(uap, flags) & R_OK)
2389 1.31 cgd flags |= VREAD;
2390 1.35 cgd if (SCARG(uap, flags) & W_OK)
2391 1.31 cgd flags |= VWRITE;
2392 1.89 mycroft if (SCARG(uap, flags) & X_OK)
2393 1.89 mycroft flags |= VEXEC;
2394 1.138 is
2395 1.332 pooka error = VOP_ACCESS(vp, flags, cred);
2396 1.138 is if (!error && (flags & VWRITE))
2397 1.138 is error = vn_writechk(vp);
2398 1.31 cgd }
2399 1.31 cgd vput(vp);
2400 1.169 christos out:
2401 1.242 elad kauth_cred_free(cred);
2402 1.31 cgd return (error);
2403 1.31 cgd }
2404 1.31 cgd
2405 1.31 cgd /*
2406 1.306 dsl * Common code for all sys_stat functions, including compat versions.
2407 1.306 dsl */
2408 1.306 dsl int
2409 1.346 ad do_sys_stat(const char *path, unsigned int nd_flags, struct stat *sb)
2410 1.306 dsl {
2411 1.306 dsl int error;
2412 1.306 dsl struct nameidata nd;
2413 1.306 dsl
2414 1.331 pooka NDINIT(&nd, LOOKUP, nd_flags | LOCKLEAF | TRYEMULROOT,
2415 1.334 pooka UIO_USERSPACE, path);
2416 1.306 dsl error = namei(&nd);
2417 1.306 dsl if (error != 0)
2418 1.306 dsl return error;
2419 1.346 ad error = vn_stat(nd.ni_vp, sb);
2420 1.306 dsl vput(nd.ni_vp);
2421 1.306 dsl return error;
2422 1.306 dsl }
2423 1.306 dsl
2424 1.306 dsl /*
2425 1.31 cgd * Get file status; this version follows links.
2426 1.31 cgd */
2427 1.31 cgd /* ARGSUSED */
2428 1.63 christos int
2429 1.383 christos sys___stat50(struct lwp *l, const struct sys___stat50_args *uap, register_t *retval)
2430 1.56 thorpej {
2431 1.335 dsl /* {
2432 1.74 cgd syscallarg(const char *) path;
2433 1.35 cgd syscallarg(struct stat *) ub;
2434 1.335 dsl } */
2435 1.31 cgd struct stat sb;
2436 1.31 cgd int error;
2437 1.31 cgd
2438 1.346 ad error = do_sys_stat(SCARG(uap, path), FOLLOW, &sb);
2439 1.31 cgd if (error)
2440 1.306 dsl return error;
2441 1.306 dsl return copyout(&sb, SCARG(uap, ub), sizeof(sb));
2442 1.31 cgd }
2443 1.31 cgd
2444 1.31 cgd /*
2445 1.31 cgd * Get file status; this version does not follow links.
2446 1.31 cgd */
2447 1.31 cgd /* ARGSUSED */
2448 1.63 christos int
2449 1.383 christos sys___lstat50(struct lwp *l, const struct sys___lstat50_args *uap, register_t *retval)
2450 1.56 thorpej {
2451 1.335 dsl /* {
2452 1.74 cgd syscallarg(const char *) path;
2453 1.35 cgd syscallarg(struct stat *) ub;
2454 1.335 dsl } */
2455 1.65 mycroft struct stat sb;
2456 1.31 cgd int error;
2457 1.31 cgd
2458 1.346 ad error = do_sys_stat(SCARG(uap, path), NOFOLLOW, &sb);
2459 1.64 jtc if (error)
2460 1.306 dsl return error;
2461 1.306 dsl return copyout(&sb, SCARG(uap, ub), sizeof(sb));
2462 1.31 cgd }
2463 1.31 cgd
2464 1.31 cgd /*
2465 1.31 cgd * Get configurable pathname variables.
2466 1.31 cgd */
2467 1.31 cgd /* ARGSUSED */
2468 1.63 christos int
2469 1.335 dsl sys_pathconf(struct lwp *l, const struct sys_pathconf_args *uap, register_t *retval)
2470 1.56 thorpej {
2471 1.335 dsl /* {
2472 1.74 cgd syscallarg(const char *) path;
2473 1.35 cgd syscallarg(int) name;
2474 1.335 dsl } */
2475 1.31 cgd int error;
2476 1.31 cgd struct nameidata nd;
2477 1.31 cgd
2478 1.310 dsl NDINIT(&nd, LOOKUP, FOLLOW | LOCKLEAF | TRYEMULROOT, UIO_USERSPACE,
2479 1.334 pooka SCARG(uap, path));
2480 1.63 christos if ((error = namei(&nd)) != 0)
2481 1.31 cgd return (error);
2482 1.35 cgd error = VOP_PATHCONF(nd.ni_vp, SCARG(uap, name), retval);
2483 1.31 cgd vput(nd.ni_vp);
2484 1.31 cgd return (error);
2485 1.31 cgd }
2486 1.31 cgd
2487 1.31 cgd /*
2488 1.31 cgd * Return target name of a symbolic link.
2489 1.31 cgd */
2490 1.31 cgd /* ARGSUSED */
2491 1.63 christos int
2492 1.335 dsl sys_readlink(struct lwp *l, const struct sys_readlink_args *uap, register_t *retval)
2493 1.56 thorpej {
2494 1.335 dsl /* {
2495 1.74 cgd syscallarg(const char *) path;
2496 1.35 cgd syscallarg(char *) buf;
2497 1.115 kleink syscallarg(size_t) count;
2498 1.335 dsl } */
2499 1.155 augustss struct vnode *vp;
2500 1.31 cgd struct iovec aiov;
2501 1.31 cgd struct uio auio;
2502 1.31 cgd int error;
2503 1.31 cgd struct nameidata nd;
2504 1.31 cgd
2505 1.310 dsl NDINIT(&nd, LOOKUP, NOFOLLOW | LOCKLEAF | TRYEMULROOT, UIO_USERSPACE,
2506 1.334 pooka SCARG(uap, path));
2507 1.63 christos if ((error = namei(&nd)) != 0)
2508 1.31 cgd return (error);
2509 1.31 cgd vp = nd.ni_vp;
2510 1.31 cgd if (vp->v_type != VLNK)
2511 1.31 cgd error = EINVAL;
2512 1.106 enami else if (!(vp->v_mount->mnt_flag & MNT_SYMPERM) ||
2513 1.332 pooka (error = VOP_ACCESS(vp, VREAD, l->l_cred)) == 0) {
2514 1.35 cgd aiov.iov_base = SCARG(uap, buf);
2515 1.35 cgd aiov.iov_len = SCARG(uap, count);
2516 1.31 cgd auio.uio_iov = &aiov;
2517 1.31 cgd auio.uio_iovcnt = 1;
2518 1.31 cgd auio.uio_offset = 0;
2519 1.31 cgd auio.uio_rw = UIO_READ;
2520 1.238 yamt KASSERT(l == curlwp);
2521 1.238 yamt auio.uio_vmspace = l->l_proc->p_vmspace;
2522 1.35 cgd auio.uio_resid = SCARG(uap, count);
2523 1.257 ad error = VOP_READLINK(vp, &auio, l->l_cred);
2524 1.31 cgd }
2525 1.31 cgd vput(vp);
2526 1.35 cgd *retval = SCARG(uap, count) - auio.uio_resid;
2527 1.31 cgd return (error);
2528 1.31 cgd }
2529 1.31 cgd
2530 1.31 cgd /*
2531 1.31 cgd * Change flags of a file given a path name.
2532 1.31 cgd */
2533 1.31 cgd /* ARGSUSED */
2534 1.63 christos int
2535 1.335 dsl sys_chflags(struct lwp *l, const struct sys_chflags_args *uap, register_t *retval)
2536 1.56 thorpej {
2537 1.335 dsl /* {
2538 1.74 cgd syscallarg(const char *) path;
2539 1.74 cgd syscallarg(u_long) flags;
2540 1.335 dsl } */
2541 1.155 augustss struct vnode *vp;
2542 1.31 cgd int error;
2543 1.31 cgd struct nameidata nd;
2544 1.31 cgd
2545 1.331 pooka NDINIT(&nd, LOOKUP, FOLLOW | TRYEMULROOT, UIO_USERSPACE,
2546 1.334 pooka SCARG(uap, path));
2547 1.63 christos if ((error = namei(&nd)) != 0)
2548 1.31 cgd return (error);
2549 1.31 cgd vp = nd.ni_vp;
2550 1.234 christos error = change_flags(vp, SCARG(uap, flags), l);
2551 1.31 cgd vput(vp);
2552 1.31 cgd return (error);
2553 1.31 cgd }
2554 1.31 cgd
2555 1.31 cgd /*
2556 1.31 cgd * Change flags of a file given a file descriptor.
2557 1.31 cgd */
2558 1.31 cgd /* ARGSUSED */
2559 1.63 christos int
2560 1.335 dsl sys_fchflags(struct lwp *l, const struct sys_fchflags_args *uap, register_t *retval)
2561 1.56 thorpej {
2562 1.335 dsl /* {
2563 1.35 cgd syscallarg(int) fd;
2564 1.74 cgd syscallarg(u_long) flags;
2565 1.335 dsl } */
2566 1.31 cgd struct vnode *vp;
2567 1.346 ad file_t *fp;
2568 1.31 cgd int error;
2569 1.31 cgd
2570 1.346 ad /* fd_getvnode() will use the descriptor for us */
2571 1.346 ad if ((error = fd_getvnode(SCARG(uap, fd), &fp)) != 0)
2572 1.31 cgd return (error);
2573 1.346 ad vp = fp->f_data;
2574 1.234 christos error = change_flags(vp, SCARG(uap, flags), l);
2575 1.113 fvdl VOP_UNLOCK(vp, 0);
2576 1.346 ad fd_putfile(SCARG(uap, fd));
2577 1.156 mrg return (error);
2578 1.156 mrg }
2579 1.156 mrg
2580 1.156 mrg /*
2581 1.163 enami * Change flags of a file given a path name; this version does
2582 1.156 mrg * not follow links.
2583 1.156 mrg */
2584 1.156 mrg int
2585 1.335 dsl sys_lchflags(struct lwp *l, const struct sys_lchflags_args *uap, register_t *retval)
2586 1.156 mrg {
2587 1.335 dsl /* {
2588 1.156 mrg syscallarg(const char *) path;
2589 1.156 mrg syscallarg(u_long) flags;
2590 1.335 dsl } */
2591 1.163 enami struct vnode *vp;
2592 1.156 mrg int error;
2593 1.156 mrg struct nameidata nd;
2594 1.156 mrg
2595 1.331 pooka NDINIT(&nd, LOOKUP, NOFOLLOW | TRYEMULROOT, UIO_USERSPACE,
2596 1.334 pooka SCARG(uap, path));
2597 1.156 mrg if ((error = namei(&nd)) != 0)
2598 1.156 mrg return (error);
2599 1.156 mrg vp = nd.ni_vp;
2600 1.234 christos error = change_flags(vp, SCARG(uap, flags), l);
2601 1.163 enami vput(vp);
2602 1.163 enami return (error);
2603 1.163 enami }
2604 1.163 enami
2605 1.163 enami /*
2606 1.163 enami * Common routine to change flags of a file.
2607 1.163 enami */
2608 1.163 enami int
2609 1.234 christos change_flags(struct vnode *vp, u_long flags, struct lwp *l)
2610 1.163 enami {
2611 1.163 enami struct vattr vattr;
2612 1.163 enami int error;
2613 1.163 enami
2614 1.156 mrg vn_lock(vp, LK_EXCLUSIVE | LK_RETRY);
2615 1.163 enami /*
2616 1.163 enami * Non-superusers cannot change the flags on devices, even if they
2617 1.163 enami * own them.
2618 1.163 enami */
2619 1.294 elad if (kauth_authorize_generic(l->l_cred, KAUTH_GENERIC_ISSUSER, NULL)) {
2620 1.332 pooka if ((error = VOP_GETATTR(vp, &vattr, l->l_cred)) != 0)
2621 1.156 mrg goto out;
2622 1.156 mrg if (vattr.va_type == VCHR || vattr.va_type == VBLK) {
2623 1.156 mrg error = EINVAL;
2624 1.156 mrg goto out;
2625 1.156 mrg }
2626 1.156 mrg }
2627 1.156 mrg VATTR_NULL(&vattr);
2628 1.163 enami vattr.va_flags = flags;
2629 1.332 pooka error = VOP_SETATTR(vp, &vattr, l->l_cred);
2630 1.156 mrg out:
2631 1.31 cgd return (error);
2632 1.31 cgd }
2633 1.31 cgd
2634 1.31 cgd /*
2635 1.98 enami * Change mode of a file given path name; this version follows links.
2636 1.31 cgd */
2637 1.31 cgd /* ARGSUSED */
2638 1.63 christos int
2639 1.335 dsl sys_chmod(struct lwp *l, const struct sys_chmod_args *uap, register_t *retval)
2640 1.56 thorpej {
2641 1.335 dsl /* {
2642 1.74 cgd syscallarg(const char *) path;
2643 1.35 cgd syscallarg(int) mode;
2644 1.335 dsl } */
2645 1.31 cgd int error;
2646 1.31 cgd struct nameidata nd;
2647 1.31 cgd
2648 1.331 pooka NDINIT(&nd, LOOKUP, FOLLOW | TRYEMULROOT, UIO_USERSPACE,
2649 1.334 pooka SCARG(uap, path));
2650 1.63 christos if ((error = namei(&nd)) != 0)
2651 1.31 cgd return (error);
2652 1.97 enami
2653 1.234 christos error = change_mode(nd.ni_vp, SCARG(uap, mode), l);
2654 1.97 enami
2655 1.97 enami vrele(nd.ni_vp);
2656 1.31 cgd return (error);
2657 1.31 cgd }
2658 1.31 cgd
2659 1.31 cgd /*
2660 1.31 cgd * Change mode of a file given a file descriptor.
2661 1.31 cgd */
2662 1.31 cgd /* ARGSUSED */
2663 1.63 christos int
2664 1.335 dsl sys_fchmod(struct lwp *l, const struct sys_fchmod_args *uap, register_t *retval)
2665 1.56 thorpej {
2666 1.335 dsl /* {
2667 1.35 cgd syscallarg(int) fd;
2668 1.35 cgd syscallarg(int) mode;
2669 1.335 dsl } */
2670 1.346 ad file_t *fp;
2671 1.31 cgd int error;
2672 1.31 cgd
2673 1.346 ad /* fd_getvnode() will use the descriptor for us */
2674 1.346 ad if ((error = fd_getvnode(SCARG(uap, fd), &fp)) != 0)
2675 1.31 cgd return (error);
2676 1.346 ad error = change_mode(fp->f_data, SCARG(uap, mode), l);
2677 1.346 ad fd_putfile(SCARG(uap, fd));
2678 1.135 thorpej return (error);
2679 1.97 enami }
2680 1.97 enami
2681 1.97 enami /*
2682 1.98 enami * Change mode of a file given path name; this version does not follow links.
2683 1.98 enami */
2684 1.98 enami /* ARGSUSED */
2685 1.98 enami int
2686 1.335 dsl sys_lchmod(struct lwp *l, const struct sys_lchmod_args *uap, register_t *retval)
2687 1.98 enami {
2688 1.335 dsl /* {
2689 1.98 enami syscallarg(const char *) path;
2690 1.98 enami syscallarg(int) mode;
2691 1.335 dsl } */
2692 1.98 enami int error;
2693 1.98 enami struct nameidata nd;
2694 1.98 enami
2695 1.331 pooka NDINIT(&nd, LOOKUP, NOFOLLOW | TRYEMULROOT, UIO_USERSPACE,
2696 1.334 pooka SCARG(uap, path));
2697 1.98 enami if ((error = namei(&nd)) != 0)
2698 1.98 enami return (error);
2699 1.98 enami
2700 1.234 christos error = change_mode(nd.ni_vp, SCARG(uap, mode), l);
2701 1.98 enami
2702 1.98 enami vrele(nd.ni_vp);
2703 1.98 enami return (error);
2704 1.98 enami }
2705 1.98 enami
2706 1.98 enami /*
2707 1.97 enami * Common routine to set mode given a vnode.
2708 1.97 enami */
2709 1.97 enami static int
2710 1.234 christos change_mode(struct vnode *vp, int mode, struct lwp *l)
2711 1.97 enami {
2712 1.97 enami struct vattr vattr;
2713 1.97 enami int error;
2714 1.97 enami
2715 1.113 fvdl vn_lock(vp, LK_EXCLUSIVE | LK_RETRY);
2716 1.113 fvdl VATTR_NULL(&vattr);
2717 1.113 fvdl vattr.va_mode = mode & ALLPERMS;
2718 1.332 pooka error = VOP_SETATTR(vp, &vattr, l->l_cred);
2719 1.113 fvdl VOP_UNLOCK(vp, 0);
2720 1.31 cgd return (error);
2721 1.31 cgd }
2722 1.31 cgd
2723 1.31 cgd /*
2724 1.98 enami * Set ownership given a path name; this version follows links.
2725 1.31 cgd */
2726 1.31 cgd /* ARGSUSED */
2727 1.63 christos int
2728 1.335 dsl sys_chown(struct lwp *l, const struct sys_chown_args *uap, register_t *retval)
2729 1.56 thorpej {
2730 1.335 dsl /* {
2731 1.74 cgd syscallarg(const char *) path;
2732 1.74 cgd syscallarg(uid_t) uid;
2733 1.74 cgd syscallarg(gid_t) gid;
2734 1.335 dsl } */
2735 1.31 cgd int error;
2736 1.31 cgd struct nameidata nd;
2737 1.31 cgd
2738 1.331 pooka NDINIT(&nd, LOOKUP, FOLLOW | TRYEMULROOT, UIO_USERSPACE,
2739 1.334 pooka SCARG(uap, path));
2740 1.63 christos if ((error = namei(&nd)) != 0)
2741 1.31 cgd return (error);
2742 1.86 kleink
2743 1.234 christos error = change_owner(nd.ni_vp, SCARG(uap, uid), SCARG(uap, gid), l, 0);
2744 1.112 kleink
2745 1.112 kleink vrele(nd.ni_vp);
2746 1.112 kleink return (error);
2747 1.112 kleink }
2748 1.112 kleink
2749 1.112 kleink /*
2750 1.112 kleink * Set ownership given a path name; this version follows links.
2751 1.112 kleink * Provides POSIX semantics.
2752 1.112 kleink */
2753 1.112 kleink /* ARGSUSED */
2754 1.112 kleink int
2755 1.335 dsl sys___posix_chown(struct lwp *l, const struct sys___posix_chown_args *uap, register_t *retval)
2756 1.112 kleink {
2757 1.335 dsl /* {
2758 1.112 kleink syscallarg(const char *) path;
2759 1.112 kleink syscallarg(uid_t) uid;
2760 1.112 kleink syscallarg(gid_t) gid;
2761 1.335 dsl } */
2762 1.112 kleink int error;
2763 1.112 kleink struct nameidata nd;
2764 1.112 kleink
2765 1.331 pooka NDINIT(&nd, LOOKUP, FOLLOW | TRYEMULROOT, UIO_USERSPACE,
2766 1.334 pooka SCARG(uap, path));
2767 1.112 kleink if ((error = namei(&nd)) != 0)
2768 1.112 kleink return (error);
2769 1.112 kleink
2770 1.234 christos error = change_owner(nd.ni_vp, SCARG(uap, uid), SCARG(uap, gid), l, 1);
2771 1.86 kleink
2772 1.86 kleink vrele(nd.ni_vp);
2773 1.31 cgd return (error);
2774 1.31 cgd }
2775 1.31 cgd
2776 1.31 cgd /*
2777 1.31 cgd * Set ownership given a file descriptor.
2778 1.31 cgd */
2779 1.31 cgd /* ARGSUSED */
2780 1.63 christos int
2781 1.335 dsl sys_fchown(struct lwp *l, const struct sys_fchown_args *uap, register_t *retval)
2782 1.56 thorpej {
2783 1.335 dsl /* {
2784 1.35 cgd syscallarg(int) fd;
2785 1.74 cgd syscallarg(uid_t) uid;
2786 1.74 cgd syscallarg(gid_t) gid;
2787 1.335 dsl } */
2788 1.71 mycroft int error;
2789 1.346 ad file_t *fp;
2790 1.31 cgd
2791 1.346 ad /* fd_getvnode() will use the descriptor for us */
2792 1.346 ad if ((error = fd_getvnode(SCARG(uap, fd), &fp)) != 0)
2793 1.31 cgd return (error);
2794 1.346 ad error = change_owner(fp->f_data, SCARG(uap, uid), SCARG(uap, gid),
2795 1.346 ad l, 0);
2796 1.346 ad fd_putfile(SCARG(uap, fd));
2797 1.135 thorpej return (error);
2798 1.112 kleink }
2799 1.112 kleink
2800 1.112 kleink /*
2801 1.112 kleink * Set ownership given a file descriptor, providing POSIX/XPG semantics.
2802 1.112 kleink */
2803 1.112 kleink /* ARGSUSED */
2804 1.112 kleink int
2805 1.335 dsl sys___posix_fchown(struct lwp *l, const struct sys___posix_fchown_args *uap, register_t *retval)
2806 1.112 kleink {
2807 1.335 dsl /* {
2808 1.112 kleink syscallarg(int) fd;
2809 1.112 kleink syscallarg(uid_t) uid;
2810 1.112 kleink syscallarg(gid_t) gid;
2811 1.335 dsl } */
2812 1.112 kleink int error;
2813 1.346 ad file_t *fp;
2814 1.112 kleink
2815 1.346 ad /* fd_getvnode() will use the descriptor for us */
2816 1.346 ad if ((error = fd_getvnode(SCARG(uap, fd), &fp)) != 0)
2817 1.112 kleink return (error);
2818 1.346 ad error = change_owner(fp->f_data, SCARG(uap, uid), SCARG(uap, gid),
2819 1.346 ad l, 1);
2820 1.346 ad fd_putfile(SCARG(uap, fd));
2821 1.135 thorpej return (error);
2822 1.86 kleink }
2823 1.86 kleink
2824 1.86 kleink /*
2825 1.98 enami * Set ownership given a path name; this version does not follow links.
2826 1.98 enami */
2827 1.98 enami /* ARGSUSED */
2828 1.98 enami int
2829 1.335 dsl sys_lchown(struct lwp *l, const struct sys_lchown_args *uap, register_t *retval)
2830 1.98 enami {
2831 1.335 dsl /* {
2832 1.98 enami syscallarg(const char *) path;
2833 1.98 enami syscallarg(uid_t) uid;
2834 1.98 enami syscallarg(gid_t) gid;
2835 1.335 dsl } */
2836 1.98 enami int error;
2837 1.98 enami struct nameidata nd;
2838 1.98 enami
2839 1.331 pooka NDINIT(&nd, LOOKUP, NOFOLLOW | TRYEMULROOT, UIO_USERSPACE,
2840 1.334 pooka SCARG(uap, path));
2841 1.98 enami if ((error = namei(&nd)) != 0)
2842 1.98 enami return (error);
2843 1.98 enami
2844 1.234 christos error = change_owner(nd.ni_vp, SCARG(uap, uid), SCARG(uap, gid), l, 0);
2845 1.112 kleink
2846 1.112 kleink vrele(nd.ni_vp);
2847 1.112 kleink return (error);
2848 1.112 kleink }
2849 1.112 kleink
2850 1.112 kleink /*
2851 1.112 kleink * Set ownership given a path name; this version does not follow links.
2852 1.112 kleink * Provides POSIX/XPG semantics.
2853 1.112 kleink */
2854 1.112 kleink /* ARGSUSED */
2855 1.112 kleink int
2856 1.335 dsl sys___posix_lchown(struct lwp *l, const struct sys___posix_lchown_args *uap, register_t *retval)
2857 1.112 kleink {
2858 1.335 dsl /* {
2859 1.112 kleink syscallarg(const char *) path;
2860 1.112 kleink syscallarg(uid_t) uid;
2861 1.112 kleink syscallarg(gid_t) gid;
2862 1.335 dsl } */
2863 1.112 kleink int error;
2864 1.112 kleink struct nameidata nd;
2865 1.112 kleink
2866 1.331 pooka NDINIT(&nd, LOOKUP, NOFOLLOW | TRYEMULROOT, UIO_USERSPACE,
2867 1.334 pooka SCARG(uap, path));
2868 1.112 kleink if ((error = namei(&nd)) != 0)
2869 1.112 kleink return (error);
2870 1.112 kleink
2871 1.234 christos error = change_owner(nd.ni_vp, SCARG(uap, uid), SCARG(uap, gid), l, 1);
2872 1.98 enami
2873 1.98 enami vrele(nd.ni_vp);
2874 1.98 enami return (error);
2875 1.98 enami }
2876 1.98 enami
2877 1.98 enami /*
2878 1.205 junyoung * Common routine to set ownership given a vnode.
2879 1.86 kleink */
2880 1.86 kleink static int
2881 1.234 christos change_owner(struct vnode *vp, uid_t uid, gid_t gid, struct lwp *l,
2882 1.221 thorpej int posix_semantics)
2883 1.86 kleink {
2884 1.86 kleink struct vattr vattr;
2885 1.112 kleink mode_t newmode;
2886 1.86 kleink int error;
2887 1.86 kleink
2888 1.113 fvdl vn_lock(vp, LK_EXCLUSIVE | LK_RETRY);
2889 1.332 pooka if ((error = VOP_GETATTR(vp, &vattr, l->l_cred)) != 0)
2890 1.86 kleink goto out;
2891 1.86 kleink
2892 1.175 thorpej #define CHANGED(x) ((int)(x) != -1)
2893 1.112 kleink newmode = vattr.va_mode;
2894 1.112 kleink if (posix_semantics) {
2895 1.112 kleink /*
2896 1.114 kleink * POSIX/XPG semantics: if the caller is not the super-user,
2897 1.114 kleink * clear set-user-id and set-group-id bits. Both POSIX and
2898 1.114 kleink * the XPG consider the behaviour for calls by the super-user
2899 1.114 kleink * implementation-defined; we leave the set-user-id and set-
2900 1.114 kleink * group-id settings intact in that case.
2901 1.112 kleink */
2902 1.257 ad if (kauth_authorize_generic(l->l_cred, KAUTH_GENERIC_ISSUSER,
2903 1.242 elad NULL) != 0)
2904 1.112 kleink newmode &= ~(S_ISUID | S_ISGID);
2905 1.112 kleink } else {
2906 1.112 kleink /*
2907 1.112 kleink * NetBSD semantics: when changing owner and/or group,
2908 1.112 kleink * clear the respective bit(s).
2909 1.112 kleink */
2910 1.112 kleink if (CHANGED(uid))
2911 1.112 kleink newmode &= ~S_ISUID;
2912 1.112 kleink if (CHANGED(gid))
2913 1.112 kleink newmode &= ~S_ISGID;
2914 1.112 kleink }
2915 1.112 kleink /* Update va_mode iff altered. */
2916 1.112 kleink if (vattr.va_mode == newmode)
2917 1.112 kleink newmode = VNOVAL;
2918 1.205 junyoung
2919 1.86 kleink VATTR_NULL(&vattr);
2920 1.175 thorpej vattr.va_uid = CHANGED(uid) ? uid : (uid_t)VNOVAL;
2921 1.175 thorpej vattr.va_gid = CHANGED(gid) ? gid : (gid_t)VNOVAL;
2922 1.86 kleink vattr.va_mode = newmode;
2923 1.332 pooka error = VOP_SETATTR(vp, &vattr, l->l_cred);
2924 1.112 kleink #undef CHANGED
2925 1.205 junyoung
2926 1.86 kleink out:
2927 1.113 fvdl VOP_UNLOCK(vp, 0);
2928 1.31 cgd return (error);
2929 1.31 cgd }
2930 1.31 cgd
2931 1.31 cgd /*
2932 1.98 enami * Set the access and modification times given a path name; this
2933 1.98 enami * version follows links.
2934 1.31 cgd */
2935 1.31 cgd /* ARGSUSED */
2936 1.63 christos int
2937 1.383 christos sys___utimes50(struct lwp *l, const struct sys___utimes50_args *uap,
2938 1.383 christos register_t *retval)
2939 1.56 thorpej {
2940 1.335 dsl /* {
2941 1.74 cgd syscallarg(const char *) path;
2942 1.74 cgd syscallarg(const struct timeval *) tptr;
2943 1.335 dsl } */
2944 1.31 cgd
2945 1.312 dsl return do_sys_utimes(l, NULL, SCARG(uap, path), FOLLOW,
2946 1.346 ad SCARG(uap, tptr), UIO_USERSPACE);
2947 1.71 mycroft }
2948 1.71 mycroft
2949 1.71 mycroft /*
2950 1.71 mycroft * Set the access and modification times given a file descriptor.
2951 1.71 mycroft */
2952 1.71 mycroft /* ARGSUSED */
2953 1.71 mycroft int
2954 1.383 christos sys___futimes50(struct lwp *l, const struct sys___futimes50_args *uap,
2955 1.383 christos register_t *retval)
2956 1.71 mycroft {
2957 1.335 dsl /* {
2958 1.71 mycroft syscallarg(int) fd;
2959 1.74 cgd syscallarg(const struct timeval *) tptr;
2960 1.335 dsl } */
2961 1.71 mycroft int error;
2962 1.346 ad file_t *fp;
2963 1.71 mycroft
2964 1.346 ad /* fd_getvnode() will use the descriptor for us */
2965 1.346 ad if ((error = fd_getvnode(SCARG(uap, fd), &fp)) != 0)
2966 1.96 enami return (error);
2967 1.346 ad error = do_sys_utimes(l, fp->f_data, NULL, 0, SCARG(uap, tptr),
2968 1.346 ad UIO_USERSPACE);
2969 1.346 ad fd_putfile(SCARG(uap, fd));
2970 1.135 thorpej return (error);
2971 1.98 enami }
2972 1.98 enami
2973 1.98 enami /*
2974 1.98 enami * Set the access and modification times given a path name; this
2975 1.98 enami * version does not follow links.
2976 1.98 enami */
2977 1.98 enami int
2978 1.383 christos sys___lutimes50(struct lwp *l, const struct sys___lutimes50_args *uap,
2979 1.383 christos register_t *retval)
2980 1.98 enami {
2981 1.335 dsl /* {
2982 1.98 enami syscallarg(const char *) path;
2983 1.98 enami syscallarg(const struct timeval *) tptr;
2984 1.335 dsl } */
2985 1.98 enami
2986 1.312 dsl return do_sys_utimes(l, NULL, SCARG(uap, path), NOFOLLOW,
2987 1.346 ad SCARG(uap, tptr), UIO_USERSPACE);
2988 1.97 enami }
2989 1.97 enami
2990 1.97 enami /*
2991 1.97 enami * Common routine to set access and modification times given a vnode.
2992 1.97 enami */
2993 1.312 dsl int
2994 1.312 dsl do_sys_utimes(struct lwp *l, struct vnode *vp, const char *path, int flag,
2995 1.312 dsl const struct timeval *tptr, enum uio_seg seg)
2996 1.97 enami {
2997 1.97 enami struct vattr vattr;
2998 1.312 dsl struct nameidata nd;
2999 1.97 enami int error;
3000 1.367 christos bool vanull, setbirthtime;
3001 1.367 christos struct timespec ts[2];
3002 1.97 enami
3003 1.97 enami if (tptr == NULL) {
3004 1.367 christos vanull = true;
3005 1.367 christos nanotime(&ts[0]);
3006 1.367 christos ts[1] = ts[0];
3007 1.71 mycroft } else {
3008 1.233 yamt struct timeval tv[2];
3009 1.233 yamt
3010 1.367 christos vanull = false;
3011 1.312 dsl if (seg != UIO_SYSSPACE) {
3012 1.383 christos error = copyin(tptr, tv, sizeof (tv));
3013 1.312 dsl if (error != 0)
3014 1.312 dsl return error;
3015 1.312 dsl tptr = tv;
3016 1.312 dsl }
3017 1.367 christos TIMEVAL_TO_TIMESPEC(&tptr[0], &ts[0]);
3018 1.367 christos TIMEVAL_TO_TIMESPEC(&tptr[1], &ts[1]);
3019 1.71 mycroft }
3020 1.312 dsl
3021 1.312 dsl if (vp == NULL) {
3022 1.334 pooka NDINIT(&nd, LOOKUP, flag | TRYEMULROOT, UIO_USERSPACE, path);
3023 1.312 dsl if ((error = namei(&nd)) != 0)
3024 1.367 christos return error;
3025 1.312 dsl vp = nd.ni_vp;
3026 1.312 dsl } else
3027 1.312 dsl nd.ni_vp = NULL;
3028 1.312 dsl
3029 1.113 fvdl vn_lock(vp, LK_EXCLUSIVE | LK_RETRY);
3030 1.367 christos setbirthtime = (VOP_GETATTR(vp, &vattr, l->l_cred) == 0 &&
3031 1.367 christos timespeccmp(&ts[1], &vattr.va_birthtime, <));
3032 1.367 christos VATTR_NULL(&vattr);
3033 1.368 christos vattr.va_atime = ts[0];
3034 1.368 christos vattr.va_mtime = ts[1];
3035 1.367 christos if (setbirthtime)
3036 1.367 christos vattr.va_birthtime = ts[1];
3037 1.367 christos if (vanull)
3038 1.367 christos vattr.va_flags |= VA_UTIMES_NULL;
3039 1.332 pooka error = VOP_SETATTR(vp, &vattr, l->l_cred);
3040 1.113 fvdl VOP_UNLOCK(vp, 0);
3041 1.312 dsl
3042 1.312 dsl if (nd.ni_vp != NULL)
3043 1.312 dsl vrele(nd.ni_vp);
3044 1.312 dsl
3045 1.367 christos return error;
3046 1.31 cgd }
3047 1.31 cgd
3048 1.31 cgd /*
3049 1.31 cgd * Truncate a file given its path name.
3050 1.31 cgd */
3051 1.31 cgd /* ARGSUSED */
3052 1.63 christos int
3053 1.335 dsl sys_truncate(struct lwp *l, const struct sys_truncate_args *uap, register_t *retval)
3054 1.56 thorpej {
3055 1.335 dsl /* {
3056 1.74 cgd syscallarg(const char *) path;
3057 1.35 cgd syscallarg(int) pad;
3058 1.35 cgd syscallarg(off_t) length;
3059 1.335 dsl } */
3060 1.155 augustss struct vnode *vp;
3061 1.31 cgd struct vattr vattr;
3062 1.31 cgd int error;
3063 1.31 cgd struct nameidata nd;
3064 1.31 cgd
3065 1.331 pooka NDINIT(&nd, LOOKUP, FOLLOW | TRYEMULROOT, UIO_USERSPACE,
3066 1.334 pooka SCARG(uap, path));
3067 1.63 christos if ((error = namei(&nd)) != 0)
3068 1.31 cgd return (error);
3069 1.31 cgd vp = nd.ni_vp;
3070 1.113 fvdl vn_lock(vp, LK_EXCLUSIVE | LK_RETRY);
3071 1.31 cgd if (vp->v_type == VDIR)
3072 1.31 cgd error = EISDIR;
3073 1.31 cgd else if ((error = vn_writechk(vp)) == 0 &&
3074 1.332 pooka (error = VOP_ACCESS(vp, VWRITE, l->l_cred)) == 0) {
3075 1.31 cgd VATTR_NULL(&vattr);
3076 1.35 cgd vattr.va_size = SCARG(uap, length);
3077 1.332 pooka error = VOP_SETATTR(vp, &vattr, l->l_cred);
3078 1.31 cgd }
3079 1.31 cgd vput(vp);
3080 1.31 cgd return (error);
3081 1.31 cgd }
3082 1.31 cgd
3083 1.31 cgd /*
3084 1.31 cgd * Truncate a file given a file descriptor.
3085 1.31 cgd */
3086 1.31 cgd /* ARGSUSED */
3087 1.63 christos int
3088 1.335 dsl sys_ftruncate(struct lwp *l, const struct sys_ftruncate_args *uap, register_t *retval)
3089 1.56 thorpej {
3090 1.335 dsl /* {
3091 1.35 cgd syscallarg(int) fd;
3092 1.35 cgd syscallarg(int) pad;
3093 1.35 cgd syscallarg(off_t) length;
3094 1.335 dsl } */
3095 1.31 cgd struct vattr vattr;
3096 1.31 cgd struct vnode *vp;
3097 1.346 ad file_t *fp;
3098 1.31 cgd int error;
3099 1.31 cgd
3100 1.346 ad /* fd_getvnode() will use the descriptor for us */
3101 1.346 ad if ((error = fd_getvnode(SCARG(uap, fd), &fp)) != 0)
3102 1.31 cgd return (error);
3103 1.135 thorpej if ((fp->f_flag & FWRITE) == 0) {
3104 1.135 thorpej error = EINVAL;
3105 1.135 thorpej goto out;
3106 1.135 thorpej }
3107 1.346 ad vp = fp->f_data;
3108 1.113 fvdl vn_lock(vp, LK_EXCLUSIVE | LK_RETRY);
3109 1.31 cgd if (vp->v_type == VDIR)
3110 1.31 cgd error = EISDIR;
3111 1.31 cgd else if ((error = vn_writechk(vp)) == 0) {
3112 1.31 cgd VATTR_NULL(&vattr);
3113 1.35 cgd vattr.va_size = SCARG(uap, length);
3114 1.332 pooka error = VOP_SETATTR(vp, &vattr, fp->f_cred);
3115 1.31 cgd }
3116 1.113 fvdl VOP_UNLOCK(vp, 0);
3117 1.135 thorpej out:
3118 1.346 ad fd_putfile(SCARG(uap, fd));
3119 1.31 cgd return (error);
3120 1.31 cgd }
3121 1.31 cgd
3122 1.31 cgd /*
3123 1.31 cgd * Sync an open file.
3124 1.31 cgd */
3125 1.31 cgd /* ARGSUSED */
3126 1.63 christos int
3127 1.335 dsl sys_fsync(struct lwp *l, const struct sys_fsync_args *uap, register_t *retval)
3128 1.56 thorpej {
3129 1.335 dsl /* {
3130 1.35 cgd syscallarg(int) fd;
3131 1.335 dsl } */
3132 1.155 augustss struct vnode *vp;
3133 1.346 ad file_t *fp;
3134 1.31 cgd int error;
3135 1.31 cgd
3136 1.346 ad /* fd_getvnode() will use the descriptor for us */
3137 1.346 ad if ((error = fd_getvnode(SCARG(uap, fd), &fp)) != 0)
3138 1.31 cgd return (error);
3139 1.346 ad vp = fp->f_data;
3140 1.113 fvdl vn_lock(vp, LK_EXCLUSIVE | LK_RETRY);
3141 1.332 pooka error = VOP_FSYNC(vp, fp->f_cred, FSYNC_WAIT, 0, 0);
3142 1.327 pooka if (error == 0 && bioopsp != NULL &&
3143 1.148 fvdl vp->v_mount && (vp->v_mount->mnt_flag & MNT_SOFTDEP))
3144 1.329 ad (*bioopsp->io_fsync)(vp, 0);
3145 1.113 fvdl VOP_UNLOCK(vp, 0);
3146 1.346 ad fd_putfile(SCARG(uap, fd));
3147 1.201 thorpej return (error);
3148 1.201 thorpej }
3149 1.201 thorpej
3150 1.201 thorpej /*
3151 1.201 thorpej * Sync a range of file data. API modeled after that found in AIX.
3152 1.201 thorpej *
3153 1.201 thorpej * FDATASYNC indicates that we need only save enough metadata to be able
3154 1.201 thorpej * to re-read the written data. Note we duplicate AIX's requirement that
3155 1.201 thorpej * the file be open for writing.
3156 1.201 thorpej */
3157 1.201 thorpej /* ARGSUSED */
3158 1.201 thorpej int
3159 1.335 dsl sys_fsync_range(struct lwp *l, const struct sys_fsync_range_args *uap, register_t *retval)
3160 1.201 thorpej {
3161 1.335 dsl /* {
3162 1.201 thorpej syscallarg(int) fd;
3163 1.201 thorpej syscallarg(int) flags;
3164 1.201 thorpej syscallarg(off_t) start;
3165 1.225 cube syscallarg(off_t) length;
3166 1.335 dsl } */
3167 1.201 thorpej struct vnode *vp;
3168 1.346 ad file_t *fp;
3169 1.201 thorpej int flags, nflags;
3170 1.201 thorpej off_t s, e, len;
3171 1.201 thorpej int error;
3172 1.201 thorpej
3173 1.346 ad /* fd_getvnode() will use the descriptor for us */
3174 1.346 ad if ((error = fd_getvnode(SCARG(uap, fd), &fp)) != 0)
3175 1.201 thorpej return (error);
3176 1.201 thorpej
3177 1.201 thorpej if ((fp->f_flag & FWRITE) == 0) {
3178 1.293 wrstuden error = EBADF;
3179 1.293 wrstuden goto out;
3180 1.201 thorpej }
3181 1.201 thorpej
3182 1.201 thorpej flags = SCARG(uap, flags);
3183 1.201 thorpej if (((flags & (FDATASYNC | FFILESYNC)) == 0) ||
3184 1.201 thorpej ((~flags & (FDATASYNC | FFILESYNC)) == 0)) {
3185 1.293 wrstuden error = EINVAL;
3186 1.293 wrstuden goto out;
3187 1.201 thorpej }
3188 1.201 thorpej /* Now set up the flags for value(s) to pass to VOP_FSYNC() */
3189 1.201 thorpej if (flags & FDATASYNC)
3190 1.201 thorpej nflags = FSYNC_DATAONLY | FSYNC_WAIT;
3191 1.201 thorpej else
3192 1.201 thorpej nflags = FSYNC_WAIT;
3193 1.216 wrstuden if (flags & FDISKSYNC)
3194 1.216 wrstuden nflags |= FSYNC_CACHE;
3195 1.201 thorpej
3196 1.201 thorpej len = SCARG(uap, length);
3197 1.201 thorpej /* If length == 0, we do the whole file, and s = l = 0 will do that */
3198 1.201 thorpej if (len) {
3199 1.201 thorpej s = SCARG(uap, start);
3200 1.201 thorpej e = s + len;
3201 1.201 thorpej if (e < s) {
3202 1.293 wrstuden error = EINVAL;
3203 1.293 wrstuden goto out;
3204 1.201 thorpej }
3205 1.201 thorpej } else {
3206 1.201 thorpej e = 0;
3207 1.201 thorpej s = 0;
3208 1.201 thorpej }
3209 1.201 thorpej
3210 1.346 ad vp = fp->f_data;
3211 1.201 thorpej vn_lock(vp, LK_EXCLUSIVE | LK_RETRY);
3212 1.332 pooka error = VOP_FSYNC(vp, fp->f_cred, nflags, s, e);
3213 1.201 thorpej
3214 1.327 pooka if (error == 0 && bioopsp != NULL &&
3215 1.201 thorpej vp->v_mount && (vp->v_mount->mnt_flag & MNT_SOFTDEP))
3216 1.329 ad (*bioopsp->io_fsync)(vp, nflags);
3217 1.201 thorpej
3218 1.201 thorpej VOP_UNLOCK(vp, 0);
3219 1.293 wrstuden out:
3220 1.346 ad fd_putfile(SCARG(uap, fd));
3221 1.31 cgd return (error);
3222 1.31 cgd }
3223 1.31 cgd
3224 1.31 cgd /*
3225 1.117 kleink * Sync the data of an open file.
3226 1.117 kleink */
3227 1.117 kleink /* ARGSUSED */
3228 1.117 kleink int
3229 1.335 dsl sys_fdatasync(struct lwp *l, const struct sys_fdatasync_args *uap, register_t *retval)
3230 1.117 kleink {
3231 1.335 dsl /* {
3232 1.117 kleink syscallarg(int) fd;
3233 1.335 dsl } */
3234 1.117 kleink struct vnode *vp;
3235 1.346 ad file_t *fp;
3236 1.117 kleink int error;
3237 1.117 kleink
3238 1.346 ad /* fd_getvnode() will use the descriptor for us */
3239 1.346 ad if ((error = fd_getvnode(SCARG(uap, fd), &fp)) != 0)
3240 1.117 kleink return (error);
3241 1.199 kleink if ((fp->f_flag & FWRITE) == 0) {
3242 1.346 ad fd_putfile(SCARG(uap, fd));
3243 1.199 kleink return (EBADF);
3244 1.199 kleink }
3245 1.346 ad vp = fp->f_data;
3246 1.117 kleink vn_lock(vp, LK_EXCLUSIVE | LK_RETRY);
3247 1.332 pooka error = VOP_FSYNC(vp, fp->f_cred, FSYNC_WAIT|FSYNC_DATAONLY, 0, 0);
3248 1.117 kleink VOP_UNLOCK(vp, 0);
3249 1.346 ad fd_putfile(SCARG(uap, fd));
3250 1.117 kleink return (error);
3251 1.117 kleink }
3252 1.117 kleink
3253 1.117 kleink /*
3254 1.90 kleink * Rename files, (standard) BSD semantics frontend.
3255 1.31 cgd */
3256 1.31 cgd /* ARGSUSED */
3257 1.63 christos int
3258 1.335 dsl sys_rename(struct lwp *l, const struct sys_rename_args *uap, register_t *retval)
3259 1.56 thorpej {
3260 1.335 dsl /* {
3261 1.74 cgd syscallarg(const char *) from;
3262 1.74 cgd syscallarg(const char *) to;
3263 1.335 dsl } */
3264 1.90 kleink
3265 1.336 ad return (do_sys_rename(SCARG(uap, from), SCARG(uap, to), UIO_USERSPACE, 0));
3266 1.90 kleink }
3267 1.90 kleink
3268 1.90 kleink /*
3269 1.90 kleink * Rename files, POSIX semantics frontend.
3270 1.90 kleink */
3271 1.90 kleink /* ARGSUSED */
3272 1.90 kleink int
3273 1.335 dsl sys___posix_rename(struct lwp *l, const struct sys___posix_rename_args *uap, register_t *retval)
3274 1.90 kleink {
3275 1.335 dsl /* {
3276 1.90 kleink syscallarg(const char *) from;
3277 1.90 kleink syscallarg(const char *) to;
3278 1.335 dsl } */
3279 1.90 kleink
3280 1.336 ad return (do_sys_rename(SCARG(uap, from), SCARG(uap, to), UIO_USERSPACE, 1));
3281 1.90 kleink }
3282 1.90 kleink
3283 1.90 kleink /*
3284 1.90 kleink * Rename files. Source and destination must either both be directories,
3285 1.90 kleink * or both not be directories. If target is a directory, it must be empty.
3286 1.90 kleink * If `from' and `to' refer to the same object, the value of the `retain'
3287 1.90 kleink * argument is used to determine whether `from' will be
3288 1.90 kleink *
3289 1.90 kleink * (retain == 0) deleted unless `from' and `to' refer to the same
3290 1.90 kleink * object in the file system's name space (BSD).
3291 1.90 kleink * (retain == 1) always retained (POSIX).
3292 1.90 kleink */
3293 1.336 ad int
3294 1.336 ad do_sys_rename(const char *from, const char *to, enum uio_seg seg, int retain)
3295 1.90 kleink {
3296 1.155 augustss struct vnode *tvp, *fvp, *tdvp;
3297 1.31 cgd struct nameidata fromnd, tond;
3298 1.344 dholland struct mount *fs;
3299 1.336 ad struct lwp *l = curlwp;
3300 1.234 christos struct proc *p;
3301 1.344 dholland uint32_t saveflag;
3302 1.31 cgd int error;
3303 1.31 cgd
3304 1.331 pooka NDINIT(&fromnd, DELETE, LOCKPARENT | SAVESTART | TRYEMULROOT,
3305 1.336 ad seg, from);
3306 1.63 christos if ((error = namei(&fromnd)) != 0)
3307 1.31 cgd return (error);
3308 1.291 pooka if (fromnd.ni_dvp != fromnd.ni_vp)
3309 1.291 pooka VOP_UNLOCK(fromnd.ni_dvp, 0);
3310 1.31 cgd fvp = fromnd.ni_vp;
3311 1.344 dholland
3312 1.344 dholland fs = fvp->v_mount;
3313 1.344 dholland error = VFS_RENAMELOCK_ENTER(fs);
3314 1.344 dholland if (error) {
3315 1.344 dholland VOP_ABORTOP(fromnd.ni_dvp, &fromnd.ni_cnd);
3316 1.344 dholland vrele(fromnd.ni_dvp);
3317 1.344 dholland vrele(fvp);
3318 1.344 dholland goto out1;
3319 1.344 dholland }
3320 1.344 dholland
3321 1.344 dholland /*
3322 1.344 dholland * close, partially, yet another race - ideally we should only
3323 1.344 dholland * go as far as getting fromnd.ni_dvp before getting the per-fs
3324 1.344 dholland * lock, and then continue to get fromnd.ni_vp, but we can't do
3325 1.344 dholland * that with namei as it stands.
3326 1.344 dholland *
3327 1.344 dholland * This still won't prevent rmdir from nuking fromnd.ni_vp
3328 1.344 dholland * under us. The real fix is to get the locks in the right
3329 1.344 dholland * order and do the lookups in the right places, but that's a
3330 1.344 dholland * major rototill.
3331 1.344 dholland *
3332 1.344 dholland * Preserve the SAVESTART in cn_flags, because who knows what
3333 1.344 dholland * might happen if we don't.
3334 1.344 dholland *
3335 1.344 dholland * Note: this logic (as well as this whole function) is cloned
3336 1.344 dholland * in nfs_serv.c. Proceed accordingly.
3337 1.344 dholland */
3338 1.344 dholland vrele(fvp);
3339 1.348 dholland if ((fromnd.ni_cnd.cn_namelen == 1 &&
3340 1.348 dholland fromnd.ni_cnd.cn_nameptr[0] == '.') ||
3341 1.348 dholland (fromnd.ni_cnd.cn_namelen == 2 &&
3342 1.348 dholland fromnd.ni_cnd.cn_nameptr[0] == '.' &&
3343 1.348 dholland fromnd.ni_cnd.cn_nameptr[1] == '.')) {
3344 1.348 dholland error = EINVAL;
3345 1.348 dholland VFS_RENAMELOCK_EXIT(fs);
3346 1.348 dholland VOP_ABORTOP(fromnd.ni_dvp, &fromnd.ni_cnd);
3347 1.348 dholland vrele(fromnd.ni_dvp);
3348 1.348 dholland goto out1;
3349 1.348 dholland }
3350 1.344 dholland saveflag = fromnd.ni_cnd.cn_flags & SAVESTART;
3351 1.344 dholland fromnd.ni_cnd.cn_flags &= ~SAVESTART;
3352 1.344 dholland vn_lock(fromnd.ni_dvp, LK_EXCLUSIVE | LK_RETRY);
3353 1.344 dholland error = relookup(fromnd.ni_dvp, &fromnd.ni_vp, &fromnd.ni_cnd);
3354 1.344 dholland fromnd.ni_cnd.cn_flags |= saveflag;
3355 1.344 dholland if (error) {
3356 1.344 dholland VOP_UNLOCK(fromnd.ni_dvp, 0);
3357 1.344 dholland VFS_RENAMELOCK_EXIT(fs);
3358 1.344 dholland VOP_ABORTOP(fromnd.ni_dvp, &fromnd.ni_cnd);
3359 1.344 dholland vrele(fromnd.ni_dvp);
3360 1.344 dholland goto out1;
3361 1.344 dholland }
3362 1.344 dholland VOP_UNLOCK(fromnd.ni_vp, 0);
3363 1.344 dholland if (fromnd.ni_dvp != fromnd.ni_vp)
3364 1.344 dholland VOP_UNLOCK(fromnd.ni_dvp, 0);
3365 1.344 dholland fvp = fromnd.ni_vp;
3366 1.344 dholland
3367 1.331 pooka NDINIT(&tond, RENAME,
3368 1.331 pooka LOCKPARENT | LOCKLEAF | NOCACHE | SAVESTART | TRYEMULROOT
3369 1.331 pooka | (fvp->v_type == VDIR ? CREATEDIR : 0),
3370 1.336 ad seg, to);
3371 1.63 christos if ((error = namei(&tond)) != 0) {
3372 1.344 dholland VFS_RENAMELOCK_EXIT(fs);
3373 1.31 cgd VOP_ABORTOP(fromnd.ni_dvp, &fromnd.ni_cnd);
3374 1.31 cgd vrele(fromnd.ni_dvp);
3375 1.31 cgd vrele(fvp);
3376 1.31 cgd goto out1;
3377 1.31 cgd }
3378 1.31 cgd tdvp = tond.ni_dvp;
3379 1.31 cgd tvp = tond.ni_vp;
3380 1.90 kleink
3381 1.31 cgd if (tvp != NULL) {
3382 1.31 cgd if (fvp->v_type == VDIR && tvp->v_type != VDIR) {
3383 1.31 cgd error = ENOTDIR;
3384 1.31 cgd goto out;
3385 1.31 cgd } else if (fvp->v_type != VDIR && tvp->v_type == VDIR) {
3386 1.31 cgd error = EISDIR;
3387 1.31 cgd goto out;
3388 1.31 cgd }
3389 1.31 cgd }
3390 1.90 kleink
3391 1.31 cgd if (fvp == tdvp)
3392 1.31 cgd error = EINVAL;
3393 1.90 kleink
3394 1.82 kleink /*
3395 1.90 kleink * Source and destination refer to the same object.
3396 1.82 kleink */
3397 1.90 kleink if (fvp == tvp) {
3398 1.90 kleink if (retain)
3399 1.90 kleink error = -1;
3400 1.90 kleink else if (fromnd.ni_dvp == tdvp &&
3401 1.90 kleink fromnd.ni_cnd.cn_namelen == tond.ni_cnd.cn_namelen &&
3402 1.123 perry !memcmp(fromnd.ni_cnd.cn_nameptr,
3403 1.90 kleink tond.ni_cnd.cn_nameptr,
3404 1.90 kleink fromnd.ni_cnd.cn_namelen))
3405 1.82 kleink error = -1;
3406 1.90 kleink }
3407 1.90 kleink
3408 1.256 elad #if NVERIEXEC > 0
3409 1.282 elad if (!error) {
3410 1.313 elad char *f1, *f2;
3411 1.384 yamt size_t f1_len;
3412 1.384 yamt size_t f2_len;
3413 1.313 elad
3414 1.384 yamt f1_len = fromnd.ni_cnd.cn_namelen + 1;
3415 1.384 yamt f1 = kmem_alloc(f1_len, KM_SLEEP);
3416 1.384 yamt strlcpy(f1, fromnd.ni_cnd.cn_nameptr, f1_len);
3417 1.384 yamt
3418 1.384 yamt f2_len = tond.ni_cnd.cn_namelen + 1;
3419 1.384 yamt f2 = kmem_alloc(f2_len, KM_SLEEP);
3420 1.384 yamt strlcpy(f2, tond.ni_cnd.cn_nameptr, f2_len);
3421 1.282 elad
3422 1.315 christos error = veriexec_renamechk(l, fvp, f1, tvp, f2);
3423 1.282 elad
3424 1.384 yamt kmem_free(f1, f1_len);
3425 1.384 yamt kmem_free(f2, f2_len);
3426 1.282 elad }
3427 1.256 elad #endif /* NVERIEXEC > 0 */
3428 1.229 elad
3429 1.31 cgd out:
3430 1.234 christos p = l->l_proc;
3431 1.31 cgd if (!error) {
3432 1.31 cgd error = VOP_RENAME(fromnd.ni_dvp, fromnd.ni_vp, &fromnd.ni_cnd,
3433 1.31 cgd tond.ni_dvp, tond.ni_vp, &tond.ni_cnd);
3434 1.344 dholland VFS_RENAMELOCK_EXIT(fs);
3435 1.31 cgd } else {
3436 1.31 cgd VOP_ABORTOP(tond.ni_dvp, &tond.ni_cnd);
3437 1.31 cgd if (tdvp == tvp)
3438 1.31 cgd vrele(tdvp);
3439 1.31 cgd else
3440 1.31 cgd vput(tdvp);
3441 1.31 cgd if (tvp)
3442 1.31 cgd vput(tvp);
3443 1.344 dholland VFS_RENAMELOCK_EXIT(fs);
3444 1.31 cgd VOP_ABORTOP(fromnd.ni_dvp, &fromnd.ni_cnd);
3445 1.31 cgd vrele(fromnd.ni_dvp);
3446 1.31 cgd vrele(fvp);
3447 1.31 cgd }
3448 1.31 cgd vrele(tond.ni_startdir);
3449 1.161 thorpej PNBUF_PUT(tond.ni_cnd.cn_pnbuf);
3450 1.31 cgd out1:
3451 1.31 cgd if (fromnd.ni_startdir)
3452 1.31 cgd vrele(fromnd.ni_startdir);
3453 1.161 thorpej PNBUF_PUT(fromnd.ni_cnd.cn_pnbuf);
3454 1.80 kleink return (error == -1 ? 0 : error);
3455 1.31 cgd }
3456 1.31 cgd
3457 1.31 cgd /*
3458 1.31 cgd * Make a directory file.
3459 1.31 cgd */
3460 1.31 cgd /* ARGSUSED */
3461 1.63 christos int
3462 1.335 dsl sys_mkdir(struct lwp *l, const struct sys_mkdir_args *uap, register_t *retval)
3463 1.56 thorpej {
3464 1.335 dsl /* {
3465 1.74 cgd syscallarg(const char *) path;
3466 1.35 cgd syscallarg(int) mode;
3467 1.335 dsl } */
3468 1.179 thorpej struct proc *p = l->l_proc;
3469 1.155 augustss struct vnode *vp;
3470 1.31 cgd struct vattr vattr;
3471 1.31 cgd int error;
3472 1.31 cgd struct nameidata nd;
3473 1.31 cgd
3474 1.310 dsl NDINIT(&nd, CREATE, LOCKPARENT | CREATEDIR | TRYEMULROOT, UIO_USERSPACE,
3475 1.334 pooka SCARG(uap, path));
3476 1.63 christos if ((error = namei(&nd)) != 0)
3477 1.31 cgd return (error);
3478 1.31 cgd vp = nd.ni_vp;
3479 1.31 cgd if (vp != NULL) {
3480 1.31 cgd VOP_ABORTOP(nd.ni_dvp, &nd.ni_cnd);
3481 1.31 cgd if (nd.ni_dvp == vp)
3482 1.31 cgd vrele(nd.ni_dvp);
3483 1.31 cgd else
3484 1.31 cgd vput(nd.ni_dvp);
3485 1.31 cgd vrele(vp);
3486 1.31 cgd return (EEXIST);
3487 1.31 cgd }
3488 1.31 cgd VATTR_NULL(&vattr);
3489 1.31 cgd vattr.va_type = VDIR;
3490 1.328 ad /* We will read cwdi->cwdi_cmask unlocked. */
3491 1.134 thorpej vattr.va_mode =
3492 1.134 thorpej (SCARG(uap, mode) & ACCESSPERMS) &~ p->p_cwdi->cwdi_cmask;
3493 1.31 cgd error = VOP_MKDIR(nd.ni_dvp, &nd.ni_vp, &nd.ni_cnd, &vattr);
3494 1.31 cgd if (!error)
3495 1.31 cgd vput(nd.ni_vp);
3496 1.31 cgd return (error);
3497 1.31 cgd }
3498 1.31 cgd
3499 1.31 cgd /*
3500 1.31 cgd * Remove a directory file.
3501 1.31 cgd */
3502 1.31 cgd /* ARGSUSED */
3503 1.63 christos int
3504 1.335 dsl sys_rmdir(struct lwp *l, const struct sys_rmdir_args *uap, register_t *retval)
3505 1.56 thorpej {
3506 1.335 dsl /* {
3507 1.74 cgd syscallarg(const char *) path;
3508 1.335 dsl } */
3509 1.155 augustss struct vnode *vp;
3510 1.31 cgd int error;
3511 1.31 cgd struct nameidata nd;
3512 1.31 cgd
3513 1.310 dsl NDINIT(&nd, DELETE, LOCKPARENT | LOCKLEAF | TRYEMULROOT, UIO_USERSPACE,
3514 1.334 pooka SCARG(uap, path));
3515 1.63 christos if ((error = namei(&nd)) != 0)
3516 1.31 cgd return (error);
3517 1.31 cgd vp = nd.ni_vp;
3518 1.31 cgd if (vp->v_type != VDIR) {
3519 1.31 cgd error = ENOTDIR;
3520 1.31 cgd goto out;
3521 1.31 cgd }
3522 1.31 cgd /*
3523 1.31 cgd * No rmdir "." please.
3524 1.31 cgd */
3525 1.31 cgd if (nd.ni_dvp == vp) {
3526 1.31 cgd error = EINVAL;
3527 1.31 cgd goto out;
3528 1.31 cgd }
3529 1.31 cgd /*
3530 1.31 cgd * The root of a mounted filesystem cannot be deleted.
3531 1.31 cgd */
3532 1.350 joerg if ((vp->v_vflag & VV_ROOT) != 0 || vp->v_mountedhere != NULL) {
3533 1.31 cgd error = EBUSY;
3534 1.197 hannken goto out;
3535 1.197 hannken }
3536 1.197 hannken error = VOP_RMDIR(nd.ni_dvp, nd.ni_vp, &nd.ni_cnd);
3537 1.197 hannken return (error);
3538 1.197 hannken
3539 1.197 hannken out:
3540 1.197 hannken VOP_ABORTOP(nd.ni_dvp, &nd.ni_cnd);
3541 1.197 hannken if (nd.ni_dvp == vp)
3542 1.197 hannken vrele(nd.ni_dvp);
3543 1.197 hannken else
3544 1.197 hannken vput(nd.ni_dvp);
3545 1.197 hannken vput(vp);
3546 1.31 cgd return (error);
3547 1.31 cgd }
3548 1.31 cgd
3549 1.31 cgd /*
3550 1.31 cgd * Read a block of directory entries in a file system independent format.
3551 1.31 cgd */
3552 1.63 christos int
3553 1.335 dsl sys___getdents30(struct lwp *l, const struct sys___getdents30_args *uap, register_t *retval)
3554 1.56 thorpej {
3555 1.335 dsl /* {
3556 1.35 cgd syscallarg(int) fd;
3557 1.35 cgd syscallarg(char *) buf;
3558 1.101 fvdl syscallarg(size_t) count;
3559 1.335 dsl } */
3560 1.346 ad file_t *fp;
3561 1.101 fvdl int error, done;
3562 1.31 cgd
3563 1.346 ad /* fd_getvnode() will use the descriptor for us */
3564 1.346 ad if ((error = fd_getvnode(SCARG(uap, fd), &fp)) != 0)
3565 1.31 cgd return (error);
3566 1.135 thorpej if ((fp->f_flag & FREAD) == 0) {
3567 1.135 thorpej error = EBADF;
3568 1.135 thorpej goto out;
3569 1.135 thorpej }
3570 1.101 fvdl error = vn_readdir(fp, SCARG(uap, buf), UIO_USERSPACE,
3571 1.234 christos SCARG(uap, count), &done, l, 0, 0);
3572 1.325 ad ktrgenio(SCARG(uap, fd), UIO_READ, SCARG(uap, buf), done, error);
3573 1.101 fvdl *retval = done;
3574 1.135 thorpej out:
3575 1.346 ad fd_putfile(SCARG(uap, fd));
3576 1.31 cgd return (error);
3577 1.31 cgd }
3578 1.31 cgd
3579 1.31 cgd /*
3580 1.31 cgd * Set the mode mask for creation of filesystem nodes.
3581 1.31 cgd */
3582 1.56 thorpej int
3583 1.335 dsl sys_umask(struct lwp *l, const struct sys_umask_args *uap, register_t *retval)
3584 1.56 thorpej {
3585 1.335 dsl /* {
3586 1.103 mycroft syscallarg(mode_t) newmask;
3587 1.335 dsl } */
3588 1.179 thorpej struct proc *p = l->l_proc;
3589 1.134 thorpej struct cwdinfo *cwdi;
3590 1.31 cgd
3591 1.328 ad /*
3592 1.328 ad * cwdi->cwdi_cmask will be read unlocked elsewhere. What's
3593 1.328 ad * important is that we serialize changes to the mask. The
3594 1.328 ad * rw_exit() will issue a write memory barrier on our behalf,
3595 1.328 ad * and force the changes out to other CPUs (as it must use an
3596 1.328 ad * atomic operation, draining the local CPU's store buffers).
3597 1.328 ad */
3598 1.134 thorpej cwdi = p->p_cwdi;
3599 1.328 ad rw_enter(&cwdi->cwdi_lock, RW_WRITER);
3600 1.134 thorpej *retval = cwdi->cwdi_cmask;
3601 1.134 thorpej cwdi->cwdi_cmask = SCARG(uap, newmask) & ALLPERMS;
3602 1.328 ad rw_exit(&cwdi->cwdi_lock);
3603 1.328 ad
3604 1.31 cgd return (0);
3605 1.31 cgd }
3606 1.31 cgd
3607 1.340 elad int
3608 1.340 elad dorevoke(struct vnode *vp, kauth_cred_t cred)
3609 1.340 elad {
3610 1.340 elad struct vattr vattr;
3611 1.340 elad int error;
3612 1.340 elad
3613 1.340 elad if ((error = VOP_GETATTR(vp, &vattr, cred)) != 0)
3614 1.342 ad return error;
3615 1.385 enami if (kauth_cred_geteuid(cred) == vattr.va_uid ||
3616 1.340 elad (error = kauth_authorize_generic(cred,
3617 1.342 ad KAUTH_GENERIC_ISSUSER, NULL)) == 0)
3618 1.340 elad VOP_REVOKE(vp, REVOKEALL);
3619 1.340 elad return (error);
3620 1.340 elad }
3621 1.340 elad
3622 1.31 cgd /*
3623 1.31 cgd * Void all references to file by ripping underlying filesystem
3624 1.31 cgd * away from vnode.
3625 1.31 cgd */
3626 1.31 cgd /* ARGSUSED */
3627 1.63 christos int
3628 1.335 dsl sys_revoke(struct lwp *l, const struct sys_revoke_args *uap, register_t *retval)
3629 1.56 thorpej {
3630 1.335 dsl /* {
3631 1.74 cgd syscallarg(const char *) path;
3632 1.335 dsl } */
3633 1.155 augustss struct vnode *vp;
3634 1.31 cgd int error;
3635 1.31 cgd struct nameidata nd;
3636 1.31 cgd
3637 1.331 pooka NDINIT(&nd, LOOKUP, FOLLOW | TRYEMULROOT, UIO_USERSPACE,
3638 1.334 pooka SCARG(uap, path));
3639 1.63 christos if ((error = namei(&nd)) != 0)
3640 1.31 cgd return (error);
3641 1.31 cgd vp = nd.ni_vp;
3642 1.340 elad error = dorevoke(vp, l->l_cred);
3643 1.31 cgd vrele(vp);
3644 1.31 cgd return (error);
3645 1.31 cgd }
3646